I have to greed with your boss. However, we have seen many cases without forwarding works fine. This search result may help,
Procedures of Installing Domain Controller in Remote Office over VPN/WAN
Because the DNS servers in each office are authoritative for their own zones, we need to configure the DNS servers in the remote office to forward requests referring to the DNS servers in the main office. So that the clients in the remote office to access resources outside their zones...
http://www.howtonetworking.com/domain/dcinremote1.htm
Bob Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN Troubleshooting on
http://www.ChicagoTech.net
How to Setup Windows, Network, VPN & Remote Access on
http://www.HowToNetworking.com
<(E-Mail Removed)> wrote in message news:(E-Mail Removed) ups.com...
I am having a "debate" with my boss on this subject so any input is
appreciated.
We are setting up a new Forest/Domain for a new network. It will
consist of Two Domain Controllers, and two DNS servers. The DNS servers
will be on the DC's.
Previously, I would have set this up as two Active Directory integrated
DNS zones with NO fowarders. If the DNS server can not resolve a name
it would go to the root servers on the internet.
However, my boss feels that the second DNS server should foward to the
first, and the first should foward the the ISP's DNS server.
Any thoughts?