Share via


Remove Forwarding and Root-Hints from AD integrated DNS server (Windows 2012 R2)

Question

Sunday, June 4, 2017 10:08 AM

Hi

We removed the Forwarding option as well Root hints from DNS servers, also enabled the option "Disable recursion (also disables forwarders)". Other options enabled with Advanced tab are "Enable Round Robin", "Enable netmask Ordering", "Secure Cache against pollution". We restarted the DNS services. Later we found Root hints are automatically populated again, so any external name resolution provided root DNS entries. So we removed root-hints once again and checking whether it's populating again. Here do we need to follow any steps to completely remove root-hints?

Thanks in advance  

LMS

All replies (5)

Monday, June 5, 2017 7:42 AM ✅Answered | 1 vote

Hi,

>>Here do we need to follow any steps to completely remove root-hints?

The root hints can be removed permanently and completely by removing the root hints from the DNS Manager, the CACHE.DNS file and from Active Directory. The root hints come back is because the root hints still exist in the other two locations (CACHE.DNS file and Active Directory).

Note Microsoft does not support the removal of all root hints from a Microsoft DNS server. A Microsoft DNS server must have at least one root hint. However, you can replace the existing root hints with new root hints. When you replace root hints, the change is permanent, and the old root hints do not reappear

More information about the reappeared Root hints,  please refer to the following article:

https://support.microsoft.com/en-us/help/818020/root-hints-reappear-after-they-are-removed

If there is any other concern, please don’t hesitate to let me know.

Best Regards,

Frank

Please remember to mark the replies as answers if they help and unmark them if they provide no help.
If you have feedback for TechNet Subscriber Support, contact [email protected].


Friday, June 9, 2017 8:22 AM

Hi,

Just checking in to see if the information provided was helpful. Please let us know if you would like further assistance.

Best Regards,

Frank

Please remember to mark the replies as answers if they help and unmark them if they provide no help.
If you have feedback for TechNet Subscriber Support, contact [email protected].


Wednesday, June 14, 2017 9:45 AM

Hi,

Just want to confirm the current situations.

Please feel free to let us know if you need further assistance.

Best Regards,

Frank

Please remember to mark the replies as answers if they help and unmark them if they provide no help.
If you have feedback for TechNet Subscriber Support, contact [email protected].


Saturday, March 17, 2018 9:35 AM

Thanks for the great description and share the useful link.

Best Regard, Babak Ramak


Sunday, March 18, 2018 6:07 AM

Also below URLs will be helpful

https://support.microsoft.com/en-us/help/818020/root-hints-reappear-after-they-are-removed , https://serverfault.com/questions/378200/how-can-i-permanently-remove-default-root-hints-from-a-server-2008-dns-server, https://serverfault.com/questions/378561/how-can-i-recreate-root-dnsnode-objects-and-their-rootdnsservers-folder-in-ad-af

LMS