If you're also talking about servers don't forget that by
default computers register their SPN using the AD domain name. So if
you have a server that registers HOST/someserver.myadname.net and the server
actually resolves to someserver.mydnszone.net Kerberos will not work for the
clients that try to connect using the DNS name.
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Brent Westmoreland
Sent: Tuesday, March 29, 2005 7:06 AM
To: [email protected]
Subject: [ActiveDir] Compelling arguments?
Clients are still able to resolve the AD DNS Domain but most do not use it as their primary suffix.
Any thoughts welcome.
