Configuring the DNS Server as a Secure Caching-only DNS Server

The DNS server on the perimeter network will be in direct contact with Internet hosts. These hosts can be DNS clients that query the perimeter network DNS server for addresses of publicly accessible domain resources. They can also be DNS servers on the Internet that the caching-only DNS server contacts to resolve Internet host names for internal network clients. In this example, the DNS server will act as a caching-only DNS server and will not host public DNS records for the domain.

Perform the following steps on the perimeter network DNS servers to configure it as a secure caching-only DNS server:

1.Click Start and point to Administrative Tools. Click on DNS.

2.In the DNS management console, right click on the server name in the left pane of the console and click Properties.

3.In the DNS server’s Properties dialog box, click on the Root Hints tab. The entries in the Name servers list are for Internet root name servers that the caching-only DNS server uses to resolve Internet host names. Without this list of root DNS servers, the caching- only DNS server will not be able to resolve the names of machines located on the Internet.

ISA Server 2004 Configuration Guide

56

Page 58
Image 58
Microsoft manual ISA Server 2004 Configuration Guide