If you install the Remote Server Administration Tools (RSAT) tools on your administrative workstation, you'll get all the aforementioned DNS Server management utilities.

However, the Windows Server engineering team added some worthwhile enhancements, including DNS policies and Response Rate Limiting (RRL).Read on to learn how to get a Windows Server 2016-based DNS server up and running.To install the DNS Server role, we can open an elevated Windows Power Shell console (right-click the Power Shell icon and select Run as Administrator from the shortcut menu) and run a single command: Install-Windows Feature -Name DNS -Include All Sub Feature -Include Management Tools If you're more of a GUI-minded administrator, you can use Server Manager to install DNS Server.Windows Server 2016 also includes the traditional and command-line tools as well.Features and functionality might differ in the final product.

If you look in Microsoft DNS, you will see that the record is created.

Upon close inspection of the security (Advanced view), you will see that the Linux host itself (as seen by its Kerberos principle name / computer object name), registered the record. NON-SECURE DYNAMIC UPDATE ZONES As discussed earlier, what happens if the DNS zones are configured for "None" or "Nonsecure and Secure"? In both scenarios, where we set the DNS zone to either None" or "Nonsecure and Secure", we will see a correctly formatted fully qualified name but then see a failure. DNS will delete the DNS record and discard the authentication token. This means until the NEXT cycle runs in 15 minutes, the client will be unresolvable (and cause great confusion every 15 minutes).

What is even more confusing is the effect you see if the zone is set to "Nonsecure and Secure". This unexpected response to SSSD will generate an error. Hopefully this explains a number of scenarios and how to set to proper configuration.

If the zone is set to "None", no update of any kind is done. To understand what happens here, you must look at the design of the DNS update process. Enjoy your more modern Linux dynamic DNS experience!

The DNS server will fail to register a single label record.