Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Considerations for creating a domain controller with DNS in home lab?

    Scheduled Pinned Locked Moved DHCP and DNS
    7 Posts 4 Posters 2.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mewsense
      last edited by

      I have pfSense running in a VM hosted in my home lab and I'm using it for DNS and DHCP services. I have created a Windows domain controller in the lab with the same DNS suffix as pfSense. So I have pfSense DNS configured like so:

      Should I create my Windows domain as duck.loc too (netbios DUCK) or something else? Anything else I should consider?

      1 Reply Last reply Reply Quote 0
      • T
        thermo
        last edited by

        you should let the windows DC handle DNS for the clients. Easiest way is to add a forwarder for the domain "duck.loc" on pfsense to point to the Windows DC ip.

        1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator
          last edited by

          Any member of domain should only use domain dns..  Ie your DC.. This should really be the dhcp server as well.. If your going to be setting up a AD domain - it should be dns and dhcp.  If need be breakout a segment for its dhcp members.. Your other devices can continue to use pfsense as dns and dhcp.  As mentioned you can setup a forwarder on pfsense for your non AD devices can resolve stuff in your AD doman.

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          1 Reply Last reply Reply Quote 0
          • M
            mewsense
            last edited by

            Thanks, how do I set up a forwarder to my AD DC in pfSense? The DC is called boron.duc.loc at IP 10.0.0.5

            1 Reply Last reply Reply Quote 0
            • M
              mewsense
              last edited by

              Do I just  add it in here?

              1 Reply Last reply Reply Quote 0
              • P
                phil.davis
                last edited by

                In DNS Forwarder, Domain Overrides section. Add a domain override for "duck.loc" to go to the address 10.0.0.5 - then requests for any names under "duck.loc" will be sent to the DNS that is hopefully listening on 10.0.0.5

                As the Greek philosopher Isosceles used to say, "There are 3 sides to every triangle."
                If I helped you, then help someone else - buy someone a gift from the INF catalog http://secure.inf.org/gifts/usd/

                1 Reply Last reply Reply Quote 0
                • M
                  mewsense
                  last edited by

                  @phil.davis:

                  In DNS Forwarder, Domain Overrides section. Add a domain override for "duck.loc" to go to the address 10.0.0.5 - then requests for any names under "duck.loc" will be sent to the DNS that is hopefully listening on 10.0.0.5

                  Thanks, it's working great now.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.