Windows Server 2016 Smart DNS (II)
We have introduced the Windows Server 2016 Smart DNS (a) in detail about Windows Server 2016 under Configure DNS policy to achieve geo-isolated access, but for the last article I encountered a problem, that is, after the increase, Found that web.ixmsoft.com access is not a problem, but the default zone in the resolution of all internal parsing fails, the query data need to add a default policy, and priority is higher than any one policy;
For example, we view policy;
get-DnsServerQueryResolutionPolicy -ZoneName "ixmsoft.com"
We test the internal parsing
Through the above we can see that the implementation of DNS records is normal, but is not access to the default zone of the other parsing records, but on the DC is normal, so confirm the issue of DNS policy configuration;
So we need to add a higher priority policy, before adding, we need to delete the previous default two, and then add; we'll first delete the added policy
remove-DnsServerQueryResolutionPolicy -ZoneName "ixmsoft.com" -Name "beijingPolicy"
remove-DnsServerQueryResolutionPolicy -ZoneName "ixmsoft.com" -Name "usPolicy"
Delete Complete all policy
We increase the policy by adding the default policy first, then the other two subnet policies
Add-DnsServerQueryResolutionPolicy -Name "DefaultPolicy" -Action ALLOW -ZoneScope "ixmsoft.com,1" -FQDN “ne,web.ixmsoft.com” -ZoneName "ixmsoft.com"Add-DnsServerQueryResolutionPolicy -Name "beijingPolicy" -Action ALLOW -ClientSubnet "eq,beijingsubnet" -ZoneScope "beijing,1" -ZoneName "ixmsoft.com" Add-DnsServerQueryResolutionPolicy -Name "usPolicy" -Action ALLOW -ClientSubnet "eq,ussubnet" -ZoneScope "us,1" -ZoneName "ixmsoft.com"
Added after we view
get-DnsServerQueryResolutionPolicy -ZoneName "ixmsoft.com"
Then we test
Windows Server 2016 Smart DNS (ii)