Get the App
SLTechnology News&Howtos  ›  Servers  › 

Separate Construction of AD and DNS (1)

Shulou Source: shulou.com Published: 2022-06-03 03:49:44 10月03日 Update

The first method is to build the DNS server first, and then build the DC domain control.

First of all, we need to prepare three cloned virtual machines, and first set the domain name to: 17net1.com

Then rename the two computers and set the IP address (here, set the IP address of DC to 192.168.20.1, the IP address of DNS is 192.168.20.2, and the IP address of the client is 192.168.20.3).

DNS server: set to the following form

Turn off the firewall

Next, install the DNS server, open Server Manager, click the roles tab, and then click add roles on the right

The rest is carried out by default.

Next, find the management tool and select DNS

Create a new zone in the forward lookup zone

Go ahead according to the New area wizard, create the main area, fill in the region name, and create a new file and file name.

Until the appearance is complete, click, and the area is created.

Add an A record of DNS itself to the area.

Click add Host to complete the creation of A record

After you have created the record, you need to modify the SOA record and the NS record.

Modify the SOA record to: hostname + domain name

The fully qualified domain name of the server is filled in the DNS server domain name, and the IP address is filled in the address of DNS itself.

After completing the above steps, the DNS is set up.

Set up DC

Modify the host name, set a static IP address, and turn off the firewall.

Open the server manager, click "roles tab" on the right, "add roles", select "Active Directory domain server", after selecting the next step, there will be a pop-up window, select the default "add necessary features", the rest of the selection can be done by default.

When the installation is complete, press the Windows key and R key; enter dcpormo in the window

The following window pops up; select a new domain in the new forest

Next, the following window appears. Do not check the "DNS server" option.

After selecting the next step, an error message appears and select "Yes".

All of the above is done, restart the server.

The following records appear in the forward resolution area of the DNS server:

After all the building is completed, you can test it with the client.

Join the computer to the domain. The client is on the same network segment as DC, and the preferred DNS is set to the IP address of the domain control.

Change the computer user name and add it to the previously established domain.

Click OK

The experiment was successful!

Tags: Server service zone address selection domain name role host client computer management next right client file part firewall remaining fireproof necessary Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno Shulou Tech Info MySQL Linux Huawei Redmi