none
DNS Non-Secure Updates RRS feed

  • Question

  • We have a DNS Zone which is configured to allow non-secure updates and we were considering to move to allowing only secure updates. Before we make the change we wanted to know if we can check if any clients are in fact utilizing the opportunity to allow non-secure updates. Is there any way to tell? Logs? etc.
    Wednesday, February 15, 2017 12:32 PM

Answers

  • Hi Reuvy,

    >>Before we make the change we wanted to know if we can check if any clients are in fact utilizing the opportunity to allow non-secure updates

    I am afraid there has no other ways to achieve the goal.

    And clients attempt to use unsecure dynamic update first, and if unsecure dynamic update is refused, client try to use secure dynamic update.

    Here is link about secure dynamic update for your reference:

    Understanding Dynamic Update

    https://technet.microsoft.com/en-us/library/cc771255(v=ws.11).aspx

    Best Regards

    John


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    • Marked as answer by Reuvy Thursday, February 16, 2017 6:08 AM
    Thursday, February 16, 2017 6:02 AM