Direct Inward Dialing: +1 408 916 9892
The Domain Name System (DNS) is partitioned into several different zones called DNS zones. A DNS zone is a distinct or contiguous part of the domain name space which represents an administrative space within the global DNS, and is delegated to a specific organization or administrator. Based on the extent of administrative rights delegated, the zones may consist of only one domain or many domains and sub-domains. DNS zones are not necessarily physically isolated from each other; they are used for delegating administrative functions and enabling granular control of DNS components.
The DNS zone file is a text based file that is stored on a DNS name server. This file contains information about mappings between IP addresses, domain names, and other resources, organized in the form of resource records (RR). There are two mandatory records which are included at the start of any DNS zone file, they are:
Apart from these two records, the DNS zone file includes records for all resources described within the zone.
All domain names must have at least one primary zone. This is the read-write copy of the zone data. Zone updates are made to this zone and then replicated to the secondary zones.
Active Directory Integrated Zone is nothing but a Primary Zone with its zone file stored in an Active Directory database rather than a computer. Multi-master replication is employed in Active Directory Integrated Zones, this allows any domain controller running DNS server service to write updates in it's authoritative zones.
The Secondary Zone is a read-only copy of the Primary Zone. The Secondary Zones are used to reduce the workload on the Primary Zone and to prevent a single point of failure.
Stub Zones are essentially Secondary Zones which store only partial zone data. The Stub Zones contain only Start of Authority (SOA), nameserver (NS) and A records.
This zone contains mapping from hostname to IP address.
Reverse Lookup Zones provide IP address to hostname resolution.
Simplify DNS Zone auditing and reporting with ADAudit Plus.
Fully functional 30-day trial
Domain naming system (DNS) servers are crucial for the operation of any network. Any unintentional or malicious modification of DNS zone settings can cause service unavailability. Hence it is important to track changes in DNS zones. ADAudit Plus simplifies monitoring of DNS zone by offering predefined DNS Zones Modified reports along with intuitive graphical representation of the same for the ease of comprehension.
Once ADAudit Plus has been installed, it automatically configures audit policies required for Active Directory auditing.
To enable automatic configuration: Log in to the ADAudit Plus web console → Domain Settings → Audit Policy: Configure.
ADAudit Plus comes bundled with more than 300 predefined reports that make AD auditing easier. The solution also sends real-time alerts for critical events and helps you to secure your network from threats and boosts your IT security posture. Check out the capabilities of ADAudit Plus here.
Try ADAudit Plus login monitoring tool to audit, track, and respond to malicious login and logoff actions instantaneously.
Try ADAudit Plus for free