5

I've got a network with 3 AD servers that also run the DNS service.

We've got a project on to migrate from Windows DNS to a new turnkey DDI solution.

I'm going through everything I can think of and manually changing its DNS client configuration to point at the new IP addresses of the new servers.

What I want to do is convert the original 3 AD/DNS servers into Forward Only servers so they send all queries to the new DNS servers, and log the inbound queries to them (so I can figure out what still needs to be changed).

I've not been able to find instructions on converting a Windows DNS server to only forward and not actually resolve queries itself.

It's a production system, so I've got to be careful about what I do to it. - for example, I can't change the IP address of the DC's.

Any ideas?

Tom O'Connor
  • 27,578

1 Answers1

2

I ended up biting the bullet.

I removed the zones from the name servers, and simultaneously swapped every client's resolver details for the new IP addresses.

Then I did the packet capture, and think I found all the sources of DNS requests.

Finally, I configured global forwarders.

It's working well so far..

Tom O'Connor
  • 27,578