Alcatel-Lucent | Integration of VitalQIP® with Microsoft Windows 2003 Networking/Active Directory
over by the DHCP clients, but if the policy is set to False the records are owned by the
Strong account and only VitalQIP can update them. Although this is a global policy, it can
be overridden at a more granular level.
Settings in VitalQIP
When the Windows 2003 DNS servers are defined in the VitalQIP GUI, Boot Method
should be set to "Directory", Secure DNS Updates should be set to True, and the follow-
ing should be provided:
Correct Proxy Kerberos Principal Name and password
•
Correct Strong Kerberos Principal name and password
•
Active Directory Domain.
•
When the domains are assigned to this server in VitalQIP, Secure Zone should be set
to True on the Primary/Secondary DNS Servers tab of the Domain profile. Please refer
to the chapter on Advanced DNS Configurations in the VitalQIP Administrator Refer-
ence Manual for more details – this is Chapter 11 for VitalQIP 6.1SP1 and Chapter 7 for
VitalQIP 6.2.
Recommended zone settings are shown in Figure 7.
22