Sign up to access this lesson
Click here to sign up and get access to this lesson!

Saving Progress...
In this Video we will:
- Describe Secondary Zones
- Explain why you would deploy a Secondary Zone
- Then we will utilize what we have learned and create a Secondary Zone.
- And finally, we will test the Zone
- At the end of this lecture you will have a thorough understanding of Secondary Zones
- You will know how to create, configure and test your Secondary Zone
Prerequisites: You must have access to or have installed in your lab the following:
- One Windows 2016 Server with Active Directory installed and promoted to a domain controller (DNS installs automatically).
- One member server with Windows 2016 server and DNS installed. This server must be joined to the domain. (Join this machine to the domain just like you would any other computer)
- Or two VM’s, one configured as a Domain Controller and one configured as a member server.
AdequatePermissions will be needed.
- To configure a DNS server that is not running as domain controller, you must be a member of the Administrators group for that computer.
- To configure a DNS server that is running on a domain controller, you must be a member of the DNS Administrators, Domain Administrators, or Enterprise Administrators group
Describe a Secondary Zone
- It is a read only copy of a primary Zone
- Changes cannot be made directly on the secondary server, only on the Master that holds the zone.
- A secondary zone can be a copy of an Active Directory integrated zone.
- Cannot be stored in Active Directory
- In order for the secondary server to receive a copy of the zone, the master zone must be configured to allow zone transfers.
- Secondary zones are supported on non-Microsoft DNS, will work with Linux and Unix.
Why would you Deploy Secondary Zones?
- Enhances redundancy
- If the server hosting the Primary copy is unavailable, this server will be available for use by the clients in its place.
Creating a Secondary Zone
Open Server Manager, then DNS Manager
I am currently working from server SVR-US-DNS1.
I have created a brand new forward lookup zone called money.com.

Right now, SVR-US-DNS1 has the primary copy of those records from MONEY.COM in its data base.

What if we want a secondary copy of that information on some other DNS server for backup purposes.
To accomplish this, we will need a second DNS server. I have a member server, that has been joined to the domain. The server has DNS installed but has not been promoted to a domain controller.
Right click DNS, Connect to the DNS member server, type SVR-US-JD

Here we have SVR-US-DNS1 and the member server SVR-US-JD displayed.

Currently we do not have a copy of money.com on SVR-US-JD
The goal is to create a copy of money.com under SVR-US-JD.
To accomplish this: Right click on the forward lookup zone under SVR-US-JD click next, New Zone, the new zone wizard opens, click next, select Secondary Zone, next

Under Zone name - Type money.com (which will be a secondary for money.com)

Click next
Master DNS server – To understand what server they are talking about here, you can ask yourself these questions. What is the server’s IP address that contains the zone money.com. Or where is the secondary getting the copy of its information? In this case, the master server is SVR-US-DNS1. I type 192.168.0.10. (Always verify the IP address on the VM, from TCPIP Properties) Click next, finish

Now we have a secondary zone called money.com on our second server.
When I click on money.com there is an error message that says the Zone has not been loaded.
Sign up to access the rest of this lesson
You must either log in or sign up to access this lesson.
CURRICULUM
Course Introduction • 10min
0 / 2 lessons complete
Instructor and Course Introduction
Video | 7 min
What's New in Windows Server 2016 DNS
Free lesson
Video | 3 min
DNS Basics • 56min
0 / 8 lessons complete
What is DNS
Video | 3 min
Installing the DNS Windows Server Role
Video | 6 min
Building DNS Server Quiz
Quiz | 10 Questions
The Hosts File
Video | 4 min
DNS Console Overview
Video | 7 min
Recursive and Iterative Queries
Video | 8 min
DNS Basics LAB
Video | 10 min
DNS Basics Quiz
Quiz | 8 Questions
DNS Resource Records • 45min
0 / 5 lessons complete
DNS Resource Record Types
Video | 3 min
Creating the mytestzone Forward Lookup Zone
Text | 2 min
Creating DNS Resource Records
Video | 4 min
Creating DNS Resource Records Lab
Lab | 30 min
DNS Resource Records Quiz
Quiz | 7 Questions
DNS Zones • 4hr 11min
0 / 12 lessons complete
DNS Zones
Video | 4 min
Creating a Forward and Reverse Lookup Zone
Video | 5 min
Creating a Secondary Zones
Video | 9 min
Stub Zone Creation
Video | 11 min
Active Directory Zone Replication
Video | 12 min
Implementing DNS Forwarding
Video | 8 min
Implementing Conditional DNS Forwarding
Video | 7 min
Forward and Reverse Zone Creation Lab
Lab | 60 min
Creating a Secondary Zone Lab
Lab | 30 min
Conditional Forwarding Lab
Lab | 60 min
Creating a Stub Zone Lab
Lab | 30 min
DNS Zones Quiz
Quiz | 15 Questions
DNS Delegation • 50min
0 / 4 lessons complete
Domain Name System and DNS Delegation
Video | 7 min
Windows 2016 Server and DNS Zone Delegation
Video | 8 min
DNS Delegation Lab
Lab | 30 min
QUIZ - Domain Name System and DNS Delegation
Quiz | 5 Questions
DNS Security Techniques • 36min
0 / 5 lessons complete
DNS Security Techniques Overview
Video | 9 min
Configuring DNS Cache Locking
Video | 5 min
Configuring DNS Socket Pools
Video | 6 min
Configuring Response Rate Limiting
Video | 8 min
DNS Security Techniques Quiz
Quiz | 8 Questions
Advanced DNS Topics • 22min
0 / 5 lessons complete
Overview of Advanced Topics
Video | 1 min
Enabling Round Robin and Netmask Ordering
Video | 5 min
Configuring Recursion
Video | 4 min
IPV4 and IPV6 Root HInts
Video | 6 min
Advanced DNS Topics Quiz
Quiz | 6 Questions
DNS Security (DNSSEC) • 1hr 16min
0 / 6 lessons complete
Windows DNS Security Overview
Video | 7 min
Symmetric vs Asymmetric Encryption
Video | 5 min
Installing DNSSEC on Windows 2016 Server
Video | 12 min
DNSSEC Client Install
Video | 7 min
DNSSEC (DNS Security Lab)
Lab | 30 min
DNSSEC Quiz
Quiz | 15 Questions
DNS Policies • 55min
0 / 6 lessons complete
DNS Policies Background Information
Video | 8 min
Configuring DNS Filtering
Video | 7 min
Configuring Split Brain DNS in an Active Directory Environment
Video | 12 min
Configuring DNS Selective Recursion Policy
Video | 7 min
Configuring a Traffic Management Policy
Video | 11 min
DNS Policies Quiz
Quiz | 10 Questions
PowerShell for DNS • 1hr 27min
0 / 6 lessons complete
PowerShell for DNS Part 1
Video | 2 min
PowerShell for DNS Part 2
Video | 5 min
PowerShell for DNS Part 3
Video | 10 min
PowerShell for DNS Part 4
Video | 5 min
PowerShell for DNS LAB
Lab | 60 min
Powershell for DNS Quiz
Quiz | 5 Questions
Troubleshooting DNS Issues - Troubleshooting Tools • 1hr 39min
0 / 8 lessons complete
Troubleshooting Tools Every IT Pro Must Know
Video | 9 min
The Events Viewer Overview
Video | 6 min
Subscriptions
Video | 9 min
Monitoring and Debug Logging
Video | 9 min
Trouble-Shooting DNS Client Issues
Video | 4 min
Troubleshooting Subscriptions Lab
Lab | 30 min
DNS Troubleshooting Lab
Lab | 30 min
DNS Troubleshooting Quiz
Quiz | 2 Questions