Understanding the Default DNS Application Directory Partitions in Active Directory
2015-10-18 16:57
513 查看
文章摘自:http://www.dell.com/support/article/us/en/19/SLN288337
As discussed in Understanding Application Directory Partitions in Active Directory, an application directory partition is a partition that contains Active Directory objects, is part of the forest DNS namespace, and is replicated among domain controllers (DCs) in a forest. Application directory partitions can be created by Active Directory-aware applications or manually.
DNS is a built-in component of Windows that utilizes application directory partitions. By default, when the DNS Server role is installed on the first DC in a forest root domain named domain.com, two partitions are created, named DomainDnsZones.domain.com and ForestDnsZones.domain.com. As their names imply, these partitions have different replication scopes: the DomainDnsZones partition is replicated to every DNS server within a domain, while the ForestDnsZones partition is replicated to every DNS server in a forest. If any child domains are subsequently created, each will have its own DomainDnsZones partition, but there is only one ForestDnsZones partition per forest.
![](http://s4.51cto.com/wyfs02/M02/85/43/wKioL1eex4_DPyCDAAClqErF400020.png)
![](http://s1.51cto.com/wyfs02/M02/85/43/wKiom1eeyCLznaUJAACY_MEuuhg371.png)
![](http://s3.51cto.com/wyfs02/M01/74/96/wKioL1YjXOXjHPE6AAH5A9bU1Zk701.jpg)
![](http://s3.51cto.com/wyfs02/M00/74/97/wKioL1YjXuvQGiGnAANzp0Y0TIA661.jpg)
These two partitions are represented inside the corresponding domain's forward lookup zone in the DNS Management console, as shown below:
![](http://kbimg.dell.com/library/KB/DELL_ORGANIZATIONAL_GROUPS/DELL_GLOBAL/I_DNS_AD1_V1a.jpg)
The function of these application directory partitions is to control the replication scopes of Active-Directory integrated DNS zones. When a zone is created, its replication scope can be set to one of the following options:
All DNS servers running on domain controllers in the domain: This option stores the zone in the DomainDnsZones partition.
All DNS servers running on domain controllers in the forest: This option stores the zone in the ForestDnsZones partition.
All domain controllers in the domain: This option stores the zone in the domain partition rather than an application directory partition.
All domain controllers in the scope of a custom directory partition: This stores the zone in the specified application directory partition.
The replication scope of a DNS zone can also be set after its creation via the zones properties window
For more information, see Understanding DNS Zone Replication in Active Directory Domain Services.
The DomainDnsZones and ForestDnsZones partitions should not be deleted. If this occurs, however, they can be recreated. For information on recreating them, see How to Recreate the Default DNS Application Partitions in Active Directory.
Quick Tips content is self-published by the Dell Support Professionals who resolve issues daily. In order to achieve a speedy publication, Quick Tips may represent only partial solutions or work-arounds that are still in development or pending further proof of successfully resolving an issue. As such Quick Tips have not been reviewed, validated or approved by Dell and should be used with appropriate caution. Dell shall not be liable for any loss, including but not limited to loss of data, loss of profit or loss of revenue, which customers may incur by following any procedure or advice set out in the Quick Tips.
附件:http://down.51cto.com/data/2367086
As discussed in Understanding Application Directory Partitions in Active Directory, an application directory partition is a partition that contains Active Directory objects, is part of the forest DNS namespace, and is replicated among domain controllers (DCs) in a forest. Application directory partitions can be created by Active Directory-aware applications or manually.
DNS is a built-in component of Windows that utilizes application directory partitions. By default, when the DNS Server role is installed on the first DC in a forest root domain named domain.com, two partitions are created, named DomainDnsZones.domain.com and ForestDnsZones.domain.com. As their names imply, these partitions have different replication scopes: the DomainDnsZones partition is replicated to every DNS server within a domain, while the ForestDnsZones partition is replicated to every DNS server in a forest. If any child domains are subsequently created, each will have its own DomainDnsZones partition, but there is only one ForestDnsZones partition per forest.
![](http://s4.51cto.com/wyfs02/M02/85/43/wKioL1eex4_DPyCDAAClqErF400020.png)
![](http://s1.51cto.com/wyfs02/M02/85/43/wKiom1eeyCLznaUJAACY_MEuuhg371.png)
![](http://s3.51cto.com/wyfs02/M01/74/96/wKioL1YjXOXjHPE6AAH5A9bU1Zk701.jpg)
![](http://s3.51cto.com/wyfs02/M00/74/97/wKioL1YjXuvQGiGnAANzp0Y0TIA661.jpg)
These two partitions are represented inside the corresponding domain's forward lookup zone in the DNS Management console, as shown below:
![](http://kbimg.dell.com/library/KB/DELL_ORGANIZATIONAL_GROUPS/DELL_GLOBAL/I_DNS_AD1_V1a.jpg)
The function of these application directory partitions is to control the replication scopes of Active-Directory integrated DNS zones. When a zone is created, its replication scope can be set to one of the following options:
All DNS servers running on domain controllers in the domain: This option stores the zone in the DomainDnsZones partition.
All DNS servers running on domain controllers in the forest: This option stores the zone in the ForestDnsZones partition.
All domain controllers in the domain: This option stores the zone in the domain partition rather than an application directory partition.
All domain controllers in the scope of a custom directory partition: This stores the zone in the specified application directory partition.
The replication scope of a DNS zone can also be set after its creation via the zones properties window
For more information, see Understanding DNS Zone Replication in Active Directory Domain Services.
The DomainDnsZones and ForestDnsZones partitions should not be deleted. If this occurs, however, they can be recreated. For information on recreating them, see How to Recreate the Default DNS Application Partitions in Active Directory.
Quick Tips content is self-published by the Dell Support Professionals who resolve issues daily. In order to achieve a speedy publication, Quick Tips may represent only partial solutions or work-arounds that are still in development or pending further proof of successfully resolving an issue. As such Quick Tips have not been reviewed, validated or approved by Dell and should be used with appropriate caution. Dell shall not be liable for any loss, including but not limited to loss of data, loss of profit or loss of revenue, which customers may incur by following any procedure or advice set out in the Quick Tips.
附件:http://down.51cto.com/data/2367086
相关文章推荐
- Serv_U 安全设置以后出现530 Not logged in, home directory does not exist的解决方法
- 使用 Iisftp.vbs 设置Active Directory 用户隔离
- PHP Directory 函数的详解
- IIS FTP 出现 530 User cannot log in, home Directory Inaccessible 错误处理方法
- bash: /usr/bin/autocrorder: /usr/bin/python^M: bad interpreter: No such file or directory
- CodeIgniter错误mysql_connect(): No such file or directory解决方法
- WIN2008 R2 Active Directory 之二 部署企业中Windows Server 2008 R2额外域控制器
- Microsoft Active Directory 常用文档速查指南, 不定期更新
- upgrade your Active Directory from Windows 2003 to Server 2008
- How to force replication of Domain Controllers
- How do I change the schedule for replication between two domain controllers in a site?
- How To Use Repadmin for Active Directory Troubleshooting
- 组策略三部曲之二:Understanding Which GPOs to Apply
- 将Active Directory组成员复制到新组
- 如何处理日志文件丢失
- Windows Server 2016-部署第一台域控制器
- Windows Server 2016-安装AD域服务注意事项
- 企业微信公众平台订阅号运营11大技巧
- iOS开发注意⚠ 持续更新