Domain Trust Stub Zone
You can add either an active directory integrated zone or a file backed zone.
Domain trust stub zone. Right click on the domain name and click properties. I would normally setup dns stub zones on each domain pointing to the dc of the other domain and then setup my trust. Add a file backed stub zone. Outgoing trust authentication level if we want users from the specified forest to have access to all computers in the local forest on the outgoing trust properties page we have to click forest wide authentication.
Must be a member of the enterprise admins group or the domain admins group in the forest root or delegated the rights to create trusts. Stub zones are a dns feature introduced in windows server 2003. Secondary zone how to configure a dns secondary zone in windows server. In this case i can do that but the records for clientdomain local show up with 192 168 4 x addresses and i need them to resolve to 6 6 200 x addresses.
On the second server open active directory domains and trusts from the administrative tools area in control panel. A stub zones allows an organization to resolve names to a private namespace or speed up name resolution to a public namespace without the use of conditional forwarders or secondary zones. You can add either a forward lookup zone or a reverse lookup zone. Add dns stub zones load up dns server click to create a stub zone enter the name of the remote domain to be trusted enter the ip address of the pdc in the remote domain once done and verified click finish.
For the direction choose two way and press next. When a dns server receives a client query request for a host. What is also beneficial about stubs is you can ad integrate them instead of manually creating a stub on each individual dc. Added by rick trader april 24 2013.
This way the zone will be available domain or forest wide depending on replication scope. Resources for it professionals sign in. Stub zone how to configure a dns stub zone in windows server. When stub zones were made available it became a solution to overcome this security issue.
A stub zone is a copy of a domain name system dns zone that contains only resource records that identify the dns servers for that zone.