Logo - tutorial.programming4.us
Windows XP
Windows Vista
Windows 7
Windows Azure
Windows Server
Windows Phone
 
 
Windows Server

Windows Server 2012 : Enhancing DHCP Reliability - DHCP Name Protection, DHCP and Dynamic DNS Configuration

12/8/2014 8:39:06 PM

DHCP Name Protection

DHCP name protection is a feature of the DHCP service that when used with Dynamic DNS registration prevents a DHCP client with a name already in the DNS domain zone from registering or overwriting an existing name that it does not own. This functionality prevents client and server spoofing and name corruption for statically configured systems already registered in DNS. You can enable name protection at either the IPv4 or IPv6 node level or at the scope level. When configured at the scope level, the settings take precedence over the IPv4 or IPv6 node settings. To enable DHCP name protection at the scope level, follow these steps:

1. Open the DHCP console and connect to the desired DHCP server.

2. Expand the IPv4 node, select and right-click the desired scope, and select Properties.

3. Display the DNS tab, and near the bottom in the Name Protection section click the Configure button.

4. In the Name Protection window, check the Enabled Name Protection check box and click OK. Click OK again in the Scope Properties window to save the changes to the scope.

To enable DHCP name protection at the IPv4 node level, follow these steps:

1. Open the DHCP console and connect to the desired DHCP server.

2. In the tree pane, select and right-click IPv4 node and select Properties.

3. Display the DNS tab, and near the bottom in the Name Protection section click the Configure button.

4. In the Name Protection window, check the Enabled Name Protection check box and click OK. Click OK again in the Scope Properties window to save the changes to the scope.

This completes the process of enabling name protection at the IPv4 node and scope level.

DHCP and Dynamic DNS Configuration

When a DHCP server is configured to register DNS records and provide name protection with Dynamic DNS, a few configurations are required to enhance reliability of this server. The first configuration is to set the default DNS registration behavior, and the second is to create a service account and define this account in the DHCP server. To configure DHCP and Dynamic DNS settings, follow these steps:

1. Using Active Directory Users and Computers console, create a user account in the domain named, for example, DHCP-SVC and configure a secure password. No special group membership is required, but set the account to not require a password change at first logon.


Note

If you want to avoid DNS registration issues, you can configure this account to have the password never expire. As a best practice, however, you should change the service account password in Active Directory and in the DHCP server settings as frequently as defined in the standard user password policy.


2. Open the DHCP console and connect to the desired DHCP server.

3. Expand the DHCP server, select and right-click the IPv4 node and select Properties.

4. Display the DNS tab. If name protection is enabled, most of the settings will be grayed out. Ensure that the check box to enable DNS dynamic update is checked, as shown in Figure 1.

Image

Figure 1. Enabling DNS dynamic updates for IPv4.

5. Display the Advanced tab and click the Credentials button to open the DNS Dynamic Update Credentials window.

6. Enter the desired service account name, domain, and password. Confirm the password and click OK to validate the credentials, as shown in Figure 2.

Image

Figure 2. Defining the DNS dynamic update credentials.

7. Click OK in the IPv4 windows to complete the changes.

8. Restart the DHCP server service.

This completes the DHCP and DNS dynamic update configuration task.

 
Other -----------------
- Windows Server 2012 : Enhancing DHCP Reliability - Link-Layer Filtering, DHCP Reservations
- Exploring DHCP Changes in Windows Server 2012 : Migrating DHCP Services from 2008 R2 to Windows Server 2012, derstanding DHCP Client Alternate Network Capability
- Exploring DHCP Changes in Windows Server 2012 : Migrating DHCP Servers Using Windows Server Migration Tools
- Sharepoint 2013 : The Office Web Applications for Sharepoint - Preparing the Server and Installing OWA via the GUI
- Sharepoint 2013 : The Office Web Applications for Sharepoint - Topology
- Sharepoint 2013 : The Office Web Applications for Sharepoint - Mobile Device Support
- Sharepoint 2013 : The Office Web Applications for Sharepoint - Desktop Enhancements
- Sharepoint 2013 : The Office Web Applications for Sharepoint - Licensing and Versions
- Microsoft Lync Server 2013 : Persistent Chat Administration (part 2) - Chat Room Management by End Users , Persistent Chat Troubleshooting
- Microsoft Lync Server 2013 : Persistent Chat Administration (part 1) - Chat Room Management by Administrators
 
 
Top 10
- Microsoft Exchange Server 2013 : Working with cmdlets (part 2) - Understanding cmdlet errors, Using cmdlet aliases
- Microsoft Exchange Server 2013 : Working with cmdlets (part 1) - Using Windows PowerShell cmdlets, Using cmdlet parameters
- Microsoft Exchange Server 2013 : Using Windows PowerShell (part 2) - Running and using cmdlets, Running and using other commands and utilities
- Microsoft Exchange Server 2013 : Using Windows PowerShell (part 1) - Running and using Windows PowerShell
- Troubleshooting Stop Messages : Being Prepared for Stop Errors - Prevent System Restarts After a Stop Error
- Troubleshooting Stop Messages : Memory Dump Files (part 3) - Using Memory Dump Files to Analyze Stop Errors - WinDbg Debugger
- Troubleshooting Stop Messages : Memory Dump Files (part 2) - Using Memory Dump Files to Analyze Stop Errors - Using Problem Reports And Solutions
- Troubleshooting Stop Messages : Memory Dump Files (part 1) - Configuring Small Memory Dump Files, Configuring Kernel Memory Dump Files
- Troubleshooting Stop Messages : Stop Message Overview - Identifying the Stop Error, Finding Troubleshooting Information
- Deploying IPv6 : Planning for IPv6 Migration - Understanding ISATAP, Migrating an Intranet to IPv6
 
STARS
MOM
HEALTH
FAMILY
ADVICES
GIRLS