Which additional name suffix entry should you add from the Remote Access Setup wizard?

Your network contains an Active Directory domain named contoso.com. All domain
controllers run Windows Server 2012.
The domain contains an Edge Server named Server1. Server1 is configured as a
DirectAccess server. Server1 has the followingsettings:
Internal DNS name: Server1.contoso.com External DNS name:
dal.contoso.com Internal IPv6 address: 2002:cla8:6a:3333::l
External IPv4 address: 65.55.37.62
Your company uses split-brain DNS for the contoso.com zone.
You run the Remote Access Setup wizard as shown in the following exhibit. (Click the Exhibit button.)

You need to ensure that client computers on the Internet can establish DirectAccess
connections to Server1.
Which additional name suffix entry should you add from the Remote Access Setup wizard?

Your network contains an Active Directory domain named contoso.com. All domain
controllers run Windows Server 2012.
The domain contains an Edge Server named Server1. Server1 is configured as a
DirectAccess server. Server1 has the followingsettings:
Internal DNS name: Server1.contoso.com External DNS name:
dal.contoso.com Internal IPv6 address: 2002:cla8:6a:3333::l
External IPv4 address: 65.55.37.62
Your company uses split-brain DNS for the contoso.com zone.
You run the Remote Access Setup wizard as shown in the following exhibit. (Click the Exhibit button.)

You need to ensure that client computers on the Internet can establish DirectAccess
connections to Server1.
Which additional name suffix entry should you add from the Remote Access Setup wizard?

A.
A Name Suffix value of Server1.contoso.com and a blank DNS Server Address value

B.
A Name Suffix value of dal.contoso.com and a blank DNS Server Address value

C.
A Name Suffix value of Server1.contoso.com and a DNS Server Address value of
65.55.37.62

D.
A Name Suffix value of dal.contoso.com and a DNS Server Address value of 65.55.37.62

Explanation:
For split-brain DNS deployments, you must list the FQDNs that are duplicated on the
Internet and intranet and decide which resources the DirectAccess client should reach, the
intranet version or the public (Internet) version. For each name that corresponds to a
resource for which you want DirectAccess clients to reach the public version, you must add
the corresponding FQDN as an exemption rule to the NRPT for your DirectAccess clients.
Name suffixes that do not have corresponding DNS servers are treated as exemptions.
http://technet.microsoft.com/en-us/library/ee382323(v=ws.10).aspx



Leave a Reply 3

Your email address will not be published. Required fields are marked *


noname

noname

I would suggest “B”, I don’t see why you would add the IP of the DA host as an DNS server.
And internet users won’t be able to resolve any internal dns so you would add the external ones I guess. I can’t find much on the subject though

https://technet.microsoft.com/en-us/library/jj574180.aspx

noname

noname

I would suggest “B”, I don’t see why you would add the IP of the DA host as an DNS server.
And internet users won’t be able to resolve any internal dns so you would add the external ones I guess. I can’t find much on the subject though

https://technet.microsoft.com/en-us/library/jj574180.aspx