You need to configure both Windows Server 2003 DNS servers so that they comply with both companies’ requirements and restrictions

You are the systems engineer for Acme Inc. The network consists of a single Active Directory domain named acme.com. All servers run Windows Server 2003. The network is not currently connected to the Internet.

Acme enters into a partnership with Compnay. The Compnay network consists of a single Active Directory domain named Compnay-ad.com. All servers in the Compnay-ad.com domain run Windows Server 2003. Compnay maintains a separate network that contains publicity accessible Web and mail servers. These Web and mail servers are members of a DNS domain named Company.com. The Company.com zone is hosted by a UNIX-based DNS server running the latest version of BIND.

Both companies require that users from each company must be able to access resources in either network. A new dedicated T1 line is established between the two offices to provide connectivity.

The Active Directory project team plans to create a forest trust relationship between the two forests. Both companies’ written security policies state that resources located on the internal network must never be exposed to the Internet. The Compnay written security policy also states that the internal network’s DNS namespace must never be exposed to the Internet.

You need to plan a name resolution strategy for internetwork connectivity. You need to configure both Windows Server 2003 DNS servers so that they comply with both companies’ requirements and restrictions. Your plan must provide for minimal disruption of network connectivity in both networks.

What should you do?

You are the systems engineer for Acme Inc. The network consists of a single Active Directory domain named acme.com. All servers run Windows Server 2003. The network is not currently connected to the Internet.

Acme enters into a partnership with Compnay. The Compnay network consists of a single Active Directory domain named Compnay-ad.com. All servers in the Compnay-ad.com domain run Windows Server 2003. Compnay maintains a separate network that contains publicity accessible Web and mail servers. These Web and mail servers are members of a DNS domain named Company.com. The Company.com zone is hosted by a UNIX-based DNS server running the latest version of BIND.

Both companies require that users from each company must be able to access resources in either network. A new dedicated T1 line is established between the two offices to provide connectivity.

The Active Directory project team plans to create a forest trust relationship between the two forests. Both companies’ written security policies state that resources located on the internal network must never be exposed to the Internet. The Compnay written security policy also states that the internal network’s DNS namespace must never be exposed to the Internet.

You need to plan a name resolution strategy for internetwork connectivity. You need to configure both Windows Server 2003 DNS servers so that they comply with both companies’ requirements and restrictions. Your plan must provide for minimal disruption of network connectivity in both networks.

What should you do?

A.
Create a conditional forwarder on the acme.com DNS server to forward all requests for hosts in the Compnay-ad.com domain to the Compnay-ad.com DNS server.
Create a conditional forwarder on the Compnay-ad.com DNS server to forward all requests for hosts in the acme.com domain to the acme.com DNS server.

B.
Create a conditional forwarder on the acme.com DNS server to forward all requests for hosts in the Compnay-ad.com domain to the Company.com UNIX-based DNS server.Configure the Company.com UNIX-based DNS server to forward all requests for hosts in the acme.com domain to the acme.com DNS server.

C.
Configure root hints on each Windows Server 2003 DNS server.Configure each Windows Server 2003 DNS server to forward requests to the Company.com UNIX-based DNS server.

D.
Configure a secondary zone on the Company.com UNIX-based DNS server for each company’s domain. Configure each company’s Windows Server 2003 DNS server to allow zone transfers to only the Company.com UNIX-based DNS server.



Leave a Reply 0

Your email address will not be published. Required fields are marked *