You are on page 1of 21

Module 7

DNS


Windows (Name Resolution)
DNS
DNS (Zones)

Lesson 1: Windows (Name Resolution)


?
DNS?
DNS

DNS
Link-Local Multicast ?

255
, , ,

Host name

FQDN

15
16

NetBIOS name

Flat namespace

Windows Socket
host name

DNS?
DNS FQDN IP
DNS :

IP

IP
email
.local

DNS
DNS DNS DNS namespace
:
(Forward lookup zone)
(Reverse lookup zone)
:
A, MX, SRV, CNAME
:
PTR, NS, SOA
AD DS

DNS

Microsoft.com
DNS
.com DNS
www.microsoft.com
IP ?

DNS
DNS

207.46.230.219
Workstation

Link-Local Multicast ?
LLMNR DNS WINS

LLMRN IPv6
Windows Vista

Network Discovery enable



1.

7. Lmhosts

2. DNS Resolver Cache /


Hosts

6. Broadcast

3. DNS

5. WINS

4. NetBIOS Name Cache

Windows Server 2008 R2 GlobalName Zone ,


single-label names

:
Nslookup
Dnscmd
Dnslint
Ipconfig
DNS

DNS resolver cache clear


hosts

Lesson 2: DNS
DNS
(Root Hints)?
DNS ?

(forwarding)?
DNS
DNS

DNS
.

.com

DNS Resolvers

DNS

.edu
DNS

**DNS resolver DNS interative query recursive query

(Root Hints)?
DNS IP
(.)
DNS

DNS

com

microsoft

13 FQDN, DNS cache.dns


DNS (Do Not Use Recursion For This Domain)

(recursion) (recursive query) . DNS DNS

DNS ?
DNS DNS
referral
DNS DNS
(.)

DNS
(recursive) (interative)
.com

DNSDNS



DNS


.com

DNS (authoritative)
(nonauthoritative)
mail1.contoso.com
DNS :
IP

contoso.com

DNS :
172.16.64.11

DNS

Database

DNS

(forwarder)?

(Conditional
forwarding)

DNS

DNS

DNS

DNS
.com

ISP

(.)
DNS

.com

contoso.com
DNS

contoso.com DNS

DNS
DNS

IP

TTL

ServerA.contoso.com

131.107.0.44

28 seconds

ServerA
ServerA
?
131.107.0.44

ServerA

Client1
Client2

ServerA
ServerA
?
131.107.0.44


1
DNS

Ipconfig /displaydns
DNS

DNS Cache Locking



cache poisoning

DNS
DNS

Active Directory Domain Services
DNS
DNS -


DNS (dnsmgmt.msc)

DNSCmd

Lesson 3: DNS (Zones)


DNS ?
?
Active Directory ?

DNS ?

(Primary)

/ DNS
%windir%\System32\Dns

(Secondary)

DNS

(Stub)

Active Directory

AD DS

- SOA, NS, A
- stub IP

?
DHCP


IP
ipconfig /registerdns

1. SOA
(Start of Authority)
2. DNS SOA

3. DNS

4. DNS

5.
DNS
6.

DNS

7. DNS

Active Directory ?
DNS AD DS
multimaster
AD DS DNS

(attribute-level )
AD : Incremental updates


: , ,

contoso.com
hqdc01
filesvr01
desktop101

zone

You might also like