Dns not updating from dhcp

The use of Name Protection in the Windows Server® 2008 R2 operating system prevents name squatting by non-Windows-based computers.“ DHCP Name Protection The DNSupdateproxy group must be secured if Name Protection is enabled on any IPv4 scope Credentials for DNS update should be configured if secure dynamic DNS update is enabled and the domain controller is on the same host as the DHCP server

=============================================================== When a client shuts down, and later returns past the lease time, it may get a different IP address.

With the default settings, a duplicate A record gets registered by DHCP with the client’s new IP.

To configure DHCP Option 081, you must look at the DHCP server properties, under the DNS Tab in DHCP properties. If you have Windows 2008 R2 or Windows 2012 R2, in addition to configuring the DNS tab to force registration, you still must configure credentials and add the server to the Dns Update Proxy group.

Despite it being a DHCP Option, it’s not found in a DHCP server, scope or class option. After configuring the above provedure, the credentials and Dns Update Proxy group configuratuion will not update current or delete duplicate records. If DHCP is on a Windows 2008 R2 DC, to protect the DC when using the Dns Update Proxy group, you must secure the group by running: dnscmd /config /Open Acl On Proxy Updates 0 Using “DHCP Name Protection.” will register A and PTR record on behalf of a client, and will prevent a workstation (non-Windows) Name Squatting, meaning using a name that another machine (non-Windows or Windows) client that DHCP already registered , from registering it’s name.

This applies to Windows 2000 Professional and all newer operating systems.

For domain controllers, due to the importance of keeping up to date and accurate SRV and other records, the Netlogon service will attempt to update these records every 60 minutes.

For example, some folks believe that the DNS servers or other DCs not be running DHCP should be in it. Make sure that NO user accounts are in that group, either.

(I hope that’s crystal clear – you would be surprised on the number of responses I get asking if the DHCP credentials should be in this group.) You Just to be crystal clear, this means that if the lease is an 8 day lease, than NOREFRESH should be 4 (four) and REFRESH should be 4 (four) so when you add them together, they are not greater than the lease length.

Note: “This is a modified configuration supported for DHCP servers running Windows Server 2008 and DHCP clients.

