Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Naming convention question re: DNS, Netbios, and VPNs

Status
Not open for further replies.

jpp

MIS
Jul 13, 2000
47
US
Greetings,

Environment:
AD 03 controllers at different sites, talking to each other via IPSEC VPN tunnels. Each site is on a different subnet.

I am considering establishing a standard naming convention for the AD boxes and other servers, such that the machine name would be the same e.g. AD, but the dns address would be distinguished via 3rd level dns domains.
For example, the AD box in our Bangkok office would be
ad.bkk.abcde.com and the AD box in NY would be
ad.nyc.abcde.com.

This would make our naming more intuitive. However, I am concerned that with the machine names being identical, we will have netbios name conflicts.
Should we just use a different naming convention and make sure the machine names are different, or am I worrying too much.
thanks.


 
Alternatively drop the AD part and create two way trusts between the two or more domains.

Or modify your plan slightly -
Use the company name for the top level domain.
eg mycompany.com
then create child domians for the others
eg bkk.mycompany.com
nyc.mycompany.com
 
I prefer this for netbios name: nyc-dc-01, bkk-dc-01, nyc-fps-01.
 
thanks for your posts.
re: the child domains, I neglected to mention that there is only one AD domain.
So I am specifically talking just about DNS domains.
Therefore, trusts do not come into the picture.

re: the child domains - that's what i have been contemplating (i call them 3rd level domains) but as i said, I am concerned that having the same machine names - even though they are part of different dns domains, may cause a conflict. Netbios is not routable, but what about when we have VPN's coming in ?

re: the netbios names like nyc-dc-01, I guess you are suggesting we use different machine names.
That's probably the safest approach, although I'm going to try to get them shorter - now that I am actively using a PocketPC for administration, I REALLY want to cut down the number of characters i have to type in to get places.

thanks again for your feedback.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top