playsafe Posted May 27, 2009 Share Posted May 27, 2009 I am running windows server 2008 as forest root domain at Head Office. Head Office has three domain controllers, 1 working as DC and other 2 are additional.Also on 3 different sites we are running two additional domain controllers each, and they are configured as primary AD integrated DNS servers as well. Their clients point to their local DNS server for queries. I have to add user of all sites manageing IT in DomainAdmins group, due to this they are able to connect all server of all sites for through management console. I want to know some method so they could only be able to connect DNS for their site DNS servers only.NOTE: Our AD has only one zone, there is no problem if they are able to modify DNS, but through their local servers only. Thanks. Link to comment Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now