Re: BIND for Active directory with secure update

2011-12-15 Thread Nicholas F Miller
You need to be running Bind 9.7.2-P2 or higher for GSS-TSIG to work. Create a user account in your AD. Then run: ktpass -out .keytab -princ DNS/@ -pass * -mapuser @ _ Nicholas Miller, OIT, University of Colorado at Boulder On Dec 9, 201

Re: BIND for Active directory with secure update

2011-12-15 Thread Danny Mayer
On 12/14/2011 2:36 PM, Vbvbrj wrote: > Hello. > > I've setup BIND to serve the requests to lan instead of Microsoft DNS by > first setting bind as a secondary dns server for Microsoft DNS, copy the > zones, and making the BIND the master. In order for domain member hosts > to update the records of

BIND for Active directory with secure update

2011-12-14 Thread Vbvbrj
Hello. I've setup BIND to serve the requests to lan instead of Microsoft DNS by first setting bind as a secondary dns server for Microsoft DNS, copy the zones, and making the BIND the master. In order for domain member hosts to update the records of the their names in dns, I allow unsecure up

BIND for Active directory with secure update

2011-12-09 Thread Vbvbrj
Hello. I've setup BIND to serve the requests to lan instead of Microsoft DNS by first setting bind as a secondary dns server for Microsoft DNS, copy the zones, and making the BIND the master. In order for domain member hosts to update the records of the their names in dns, I allow unsecure up