Domain Trust Without Conditional Forwarder
So when i started the only.
Domain trust without conditional forwarder. You don t want to use root hints so you add goolge s public dns servers as conditional forwarders. If i connect to the dns servers on domain local and do an nslookup of the same entry it succeeds. After we setting up conditional forwarder or secondary zone we can refer to the link tim provided to create forest domain trust. You do not need to create a firewall rule for every domain controller.
You will also want to set up conditional forwarders in each domain. If you mean you want to achieve dns resolution on both domain yes you can use conditional forwarder stub zones or even nrpt. This way the conditional forwarder will be available domain or forest wide. If you want to use the same adfs on both domains without a trust you can.
Just a quick example. Therefore in the forest root domain you would create a delegation zone with the ips of the dns servers in the child domain. Now your clients can resolve hosts on the trusted domain s network. 389 636 ssl ldap global catalog lookups.
Create a conditional dns forwarder in domain b for domain a. Delegation can be used in a situation where a child domain host their own dns zone. 3268 3269 ssl dns. You have a trust with another domain.
Create a conditional dns forwarder in domain a for domain b. You can define the other domain as an ldap provider. Go to active directory domains and trusts and setup the trust. We have two dns servers on domain local.
But again that s not really an adfs question either. Let s focus on the adfs scenario. You add a stubzone so that you don t have to worry about dealing with a secondary zone. Parent child dns zone delegation.
Add ip address of dns and check store this conditional forwarder in active directory 5. In dns domain type the fully qualified domain name fqdn of the domain for which you want to forward queries. Best regards daisy zhou.