Active Directory - List ISP DNS servers as Forwarders?Active Directory design for hosted services provisionResolving DNS issues in an Active Directory Domain ending in .com instead of .localHow to set up multiple DNS servers on an intranetWhy do all my 'Forwarders' tabs only list the domain's domain controllers?Internal-only DNS Master and Slave Servers on Linux (No Internet) - Recursion?Domain Controller's DNS NIC configurationDNS - Remove Active Directory Integrated Forwarder on One ServerBind DNS Recursion SlowActive Directory multi-tree, single forest DNS configurationWindows 2012R2 How to disable “Use root hints if no forwarders are available” using a powershell command

Help in identifying a mystery wall socket

What information do scammers need to withdraw money from an account?

Where to find every-day healthy food near Heathrow Airport?

Ito`s Lemma problem

Jesus' words on the Jews

Anabelian geometry ~ higher category theory

Effects of ~10atm pressure on engine design

Why does my circuit work on a breadboard, but not on a perfboard? I am new to soldering

Find hamming distance between two Strings of equal length in Java

correct spelling of "carruffel" (fuzz, hustle, all that jazz)

Area under the curve - Integrals (Antiderivatives)

Automatically anti-predictably assemble an alliterative aria

Does Lawful Interception of 4G / the proposed 5G provide a back door for hackers as well?

Is there anything special about -1 (0xFFFFFFFF) regarding ADC?

Are there any established rules for splitting books into parts, chapters, sections etc?

On what legal basis did the UK remove the 'European Union' from its passport?

Rounding a number extracted by jq to limit the decimal points

What is the largest number of identical satellites launched together?

Why did I need to *reboot* to change my group membership

Is there ever any indication in the MCU as to how Spider-Man got his powers?

what does a native speaker say when he wanted to leave his work?

Is there any good reason to write "it is easy to see"?

Longest Text in Latin

Loading Latex packages into Mathematica



Active Directory - List ISP DNS servers as Forwarders?


Active Directory design for hosted services provisionResolving DNS issues in an Active Directory Domain ending in .com instead of .localHow to set up multiple DNS servers on an intranetWhy do all my 'Forwarders' tabs only list the domain's domain controllers?Internal-only DNS Master and Slave Servers on Linux (No Internet) - Recursion?Domain Controller's DNS NIC configurationDNS - Remove Active Directory Integrated Forwarder on One ServerBind DNS Recursion SlowActive Directory multi-tree, single forest DNS configurationWindows 2012R2 How to disable “Use root hints if no forwarders are available” using a powershell command






.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty height:90px;width:728px;box-sizing:border-box;








3















Background: I have a relatively small Active Directory domain (Windows 2003 Functional level) with two domain controllers, both running DNS servers. They are the primary and secondary DNS servers for the LAN. No other local DNS. I do not have any subdomains or recursion going on.



My Question: In the DNS Manager, under server Properties, Forwarders tab. Should I have my ISP's DNS servers listed here (or the Google ones)? Or should I leave the Forwarders tab blank and rely on the Root Hints servers?



My Forwarders Tab



I Googled before posting. About half the advice I read said the use the ISP DNS as forwarders, and half said to just use the Root Hints. So, I have no idea which is "best" for my setup (which I imagine is pretty typical for a small shop).










share|improve this question






























    3















    Background: I have a relatively small Active Directory domain (Windows 2003 Functional level) with two domain controllers, both running DNS servers. They are the primary and secondary DNS servers for the LAN. No other local DNS. I do not have any subdomains or recursion going on.



    My Question: In the DNS Manager, under server Properties, Forwarders tab. Should I have my ISP's DNS servers listed here (or the Google ones)? Or should I leave the Forwarders tab blank and rely on the Root Hints servers?



    My Forwarders Tab



    I Googled before posting. About half the advice I read said the use the ISP DNS as forwarders, and half said to just use the Root Hints. So, I have no idea which is "best" for my setup (which I imagine is pretty typical for a small shop).










    share|improve this question


























      3












      3








      3








      Background: I have a relatively small Active Directory domain (Windows 2003 Functional level) with two domain controllers, both running DNS servers. They are the primary and secondary DNS servers for the LAN. No other local DNS. I do not have any subdomains or recursion going on.



      My Question: In the DNS Manager, under server Properties, Forwarders tab. Should I have my ISP's DNS servers listed here (or the Google ones)? Or should I leave the Forwarders tab blank and rely on the Root Hints servers?



      My Forwarders Tab



      I Googled before posting. About half the advice I read said the use the ISP DNS as forwarders, and half said to just use the Root Hints. So, I have no idea which is "best" for my setup (which I imagine is pretty typical for a small shop).










      share|improve this question
















      Background: I have a relatively small Active Directory domain (Windows 2003 Functional level) with two domain controllers, both running DNS servers. They are the primary and secondary DNS servers for the LAN. No other local DNS. I do not have any subdomains or recursion going on.



      My Question: In the DNS Manager, under server Properties, Forwarders tab. Should I have my ISP's DNS servers listed here (or the Google ones)? Or should I leave the Forwarders tab blank and rely on the Root Hints servers?



      My Forwarders Tab



      I Googled before posting. About half the advice I read said the use the ISP DNS as forwarders, and half said to just use the Root Hints. So, I have no idea which is "best" for my setup (which I imagine is pretty typical for a small shop).







      domain-name-system active-directory domain-controller






      share|improve this question















      share|improve this question













      share|improve this question




      share|improve this question








      edited May 9 '14 at 16:01







      myron-semack

















      asked May 9 '14 at 15:41









      myron-semackmyron-semack

      2,3281316




      2,3281316




















          5 Answers
          5






          active

          oldest

          votes


















          3














          Unless you have some reason to directly recurse from the root, I'd recommend using a forwarder; Google or your ISP is much more likely to have something in cache for a query, so it'll provide better performance for name resolution within your network.



          As far as Google vs ISP, there are two reasons that you might want to use Google over your ISP:



          • Performance. Google's systems are anycasted and do some interesting stuff with cache; test and see if they're generally faster than your ISP.

          • Badly behaved ISP. Some ISPs fiddle with queries, doing dirty stuff like NXDomain hijacking.





          share|improve this answer























          • I agree with the badly behaved ISP part. I've had more trouble with ISPs who didn't truly have the knowledge/manpower to run a good operation and always blamed things on our side of the equipment rather than theirs.

            – Brad Bouchard
            May 9 '14 at 15:52


















          3














          What I have come to in my experience is that it's good (and doesn't hurt to have more than 2) to use a big name (Google, Microsoft, Verizon) set of DNS forwards, and your local ISPs. in conjunction. The reason I like this approach is that local ISPs usually don't have the infrastructure or man-power that the larger named companies do; meaning if they go down, I want to be able to have another set of DNS forwarders to rely on, and vice versa. If for some unknown reason Google or Verizon's DNS servers are down, then my local ISP can take over and work.



          Also, I've had issues with local ISPs and their caching times; they do vary throughout regions, but Google and Verizon always had the best TTL refreshes for me and my clients. There isn't a "best practice" per se, just different approaches like I've described.






          share|improve this answer






























            2














            What is "best" depends on your situation. A person who is in child domain might want to set his or her forwarders to their parent domain's DNS servers.



            Or you might want to set your forwarders to a set of DNS servers that are authoritative for a particular domain that's internal to your organization.



            Or you might not have internet access and so root hints won't help you.



            Or you might prefer a particular forwarder to root hints for performance reasons.



            Or if you don't really care about any of the above, then root hints work fine.






            share|improve this answer























            • Very good point on the part where you talked about not having Internet access; if this were the case then root hints wouldn't even matter. Good stuff.

              – Brad Bouchard
              May 9 '14 at 15:55


















            1














            I do support the approach of having a "Big Name" nameserver alongside your local ISP as forwarders for reliability. But considering performance, I think the best thing to do is to benchmark with a tool like GRC's DNS Benchmark and use the servers that perform the best!






            share|improve this answer






























              1














              One thing none of the other answers mentioned, and the most important reason why you do want to use your ISP DNS as your primary DNS forwarders, is that your ISP DNS gives you access to local Content Delivery Networks (CDNs).



              A CDN caches internet data and uses DNS wizardry to point IP addresses to the CDN first. What this means is that the YouTube or Netflix video you're watching is cached on servers at the CDN. The CDN is located geographically close to you so that you stream the video from a server a few miles away instead of a few thousand miles away. This reduces latency and shortens download times.



              If your office is located in Colorado Springs, for example, your ISP will redirect to CDNs in Colorado Springs and Denver. The nearest Google DNS server is in Iowa and doesn't have a clue where your office is or where the nearest CDN is located. This means that using Google DNS will send your browsing requests through Google's CDNs or directly to the authoritative host, increasing latency and slowing download speeds.



              I recommend setting your ISP DNS as your primary DNS forwarders, but always include a fallback forwarder to a public DNS server just in case. The only exception to this is if the ISP DNS servers are unreliable, which you can test using GRC's DNS Benchmark as N.Balauro mentioned in their answer.



              There are various paid DNS services (such as OpenDNS) that offer their own CDNs and have much better geographic coverage than Google's free DNS.






              share|improve this answer























                Your Answer








                StackExchange.ready(function()
                var channelOptions =
                tags: "".split(" "),
                id: "2"
                ;
                initTagRenderer("".split(" "), "".split(" "), channelOptions);

                StackExchange.using("externalEditor", function()
                // Have to fire editor after snippets, if snippets enabled
                if (StackExchange.settings.snippets.snippetsEnabled)
                StackExchange.using("snippets", function()
                createEditor();
                );

                else
                createEditor();

                );

                function createEditor()
                StackExchange.prepareEditor(
                heartbeatType: 'answer',
                autoActivateHeartbeat: false,
                convertImagesToLinks: true,
                noModals: true,
                showLowRepImageUploadWarning: true,
                reputationToPostImages: 10,
                bindNavPrevention: true,
                postfix: "",
                imageUploader:
                brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
                contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
                allowUrls: true
                ,
                onDemand: true,
                discardSelector: ".discard-answer"
                ,immediatelyShowMarkdownHelp:true
                );



                );













                draft saved

                draft discarded


















                StackExchange.ready(
                function ()
                StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f594179%2factive-directory-list-isp-dns-servers-as-forwarders%23new-answer', 'question_page');

                );

                Post as a guest















                Required, but never shown

























                5 Answers
                5






                active

                oldest

                votes








                5 Answers
                5






                active

                oldest

                votes









                active

                oldest

                votes






                active

                oldest

                votes









                3














                Unless you have some reason to directly recurse from the root, I'd recommend using a forwarder; Google or your ISP is much more likely to have something in cache for a query, so it'll provide better performance for name resolution within your network.



                As far as Google vs ISP, there are two reasons that you might want to use Google over your ISP:



                • Performance. Google's systems are anycasted and do some interesting stuff with cache; test and see if they're generally faster than your ISP.

                • Badly behaved ISP. Some ISPs fiddle with queries, doing dirty stuff like NXDomain hijacking.





                share|improve this answer























                • I agree with the badly behaved ISP part. I've had more trouble with ISPs who didn't truly have the knowledge/manpower to run a good operation and always blamed things on our side of the equipment rather than theirs.

                  – Brad Bouchard
                  May 9 '14 at 15:52















                3














                Unless you have some reason to directly recurse from the root, I'd recommend using a forwarder; Google or your ISP is much more likely to have something in cache for a query, so it'll provide better performance for name resolution within your network.



                As far as Google vs ISP, there are two reasons that you might want to use Google over your ISP:



                • Performance. Google's systems are anycasted and do some interesting stuff with cache; test and see if they're generally faster than your ISP.

                • Badly behaved ISP. Some ISPs fiddle with queries, doing dirty stuff like NXDomain hijacking.





                share|improve this answer























                • I agree with the badly behaved ISP part. I've had more trouble with ISPs who didn't truly have the knowledge/manpower to run a good operation and always blamed things on our side of the equipment rather than theirs.

                  – Brad Bouchard
                  May 9 '14 at 15:52













                3












                3








                3







                Unless you have some reason to directly recurse from the root, I'd recommend using a forwarder; Google or your ISP is much more likely to have something in cache for a query, so it'll provide better performance for name resolution within your network.



                As far as Google vs ISP, there are two reasons that you might want to use Google over your ISP:



                • Performance. Google's systems are anycasted and do some interesting stuff with cache; test and see if they're generally faster than your ISP.

                • Badly behaved ISP. Some ISPs fiddle with queries, doing dirty stuff like NXDomain hijacking.





                share|improve this answer













                Unless you have some reason to directly recurse from the root, I'd recommend using a forwarder; Google or your ISP is much more likely to have something in cache for a query, so it'll provide better performance for name resolution within your network.



                As far as Google vs ISP, there are two reasons that you might want to use Google over your ISP:



                • Performance. Google's systems are anycasted and do some interesting stuff with cache; test and see if they're generally faster than your ISP.

                • Badly behaved ISP. Some ISPs fiddle with queries, doing dirty stuff like NXDomain hijacking.






                share|improve this answer












                share|improve this answer



                share|improve this answer










                answered May 9 '14 at 15:49









                Shane MaddenShane Madden

                105k9148225




                105k9148225












                • I agree with the badly behaved ISP part. I've had more trouble with ISPs who didn't truly have the knowledge/manpower to run a good operation and always blamed things on our side of the equipment rather than theirs.

                  – Brad Bouchard
                  May 9 '14 at 15:52

















                • I agree with the badly behaved ISP part. I've had more trouble with ISPs who didn't truly have the knowledge/manpower to run a good operation and always blamed things on our side of the equipment rather than theirs.

                  – Brad Bouchard
                  May 9 '14 at 15:52
















                I agree with the badly behaved ISP part. I've had more trouble with ISPs who didn't truly have the knowledge/manpower to run a good operation and always blamed things on our side of the equipment rather than theirs.

                – Brad Bouchard
                May 9 '14 at 15:52





                I agree with the badly behaved ISP part. I've had more trouble with ISPs who didn't truly have the knowledge/manpower to run a good operation and always blamed things on our side of the equipment rather than theirs.

                – Brad Bouchard
                May 9 '14 at 15:52













                3














                What I have come to in my experience is that it's good (and doesn't hurt to have more than 2) to use a big name (Google, Microsoft, Verizon) set of DNS forwards, and your local ISPs. in conjunction. The reason I like this approach is that local ISPs usually don't have the infrastructure or man-power that the larger named companies do; meaning if they go down, I want to be able to have another set of DNS forwarders to rely on, and vice versa. If for some unknown reason Google or Verizon's DNS servers are down, then my local ISP can take over and work.



                Also, I've had issues with local ISPs and their caching times; they do vary throughout regions, but Google and Verizon always had the best TTL refreshes for me and my clients. There isn't a "best practice" per se, just different approaches like I've described.






                share|improve this answer



























                  3














                  What I have come to in my experience is that it's good (and doesn't hurt to have more than 2) to use a big name (Google, Microsoft, Verizon) set of DNS forwards, and your local ISPs. in conjunction. The reason I like this approach is that local ISPs usually don't have the infrastructure or man-power that the larger named companies do; meaning if they go down, I want to be able to have another set of DNS forwarders to rely on, and vice versa. If for some unknown reason Google or Verizon's DNS servers are down, then my local ISP can take over and work.



                  Also, I've had issues with local ISPs and their caching times; they do vary throughout regions, but Google and Verizon always had the best TTL refreshes for me and my clients. There isn't a "best practice" per se, just different approaches like I've described.






                  share|improve this answer

























                    3












                    3








                    3







                    What I have come to in my experience is that it's good (and doesn't hurt to have more than 2) to use a big name (Google, Microsoft, Verizon) set of DNS forwards, and your local ISPs. in conjunction. The reason I like this approach is that local ISPs usually don't have the infrastructure or man-power that the larger named companies do; meaning if they go down, I want to be able to have another set of DNS forwarders to rely on, and vice versa. If for some unknown reason Google or Verizon's DNS servers are down, then my local ISP can take over and work.



                    Also, I've had issues with local ISPs and their caching times; they do vary throughout regions, but Google and Verizon always had the best TTL refreshes for me and my clients. There isn't a "best practice" per se, just different approaches like I've described.






                    share|improve this answer













                    What I have come to in my experience is that it's good (and doesn't hurt to have more than 2) to use a big name (Google, Microsoft, Verizon) set of DNS forwards, and your local ISPs. in conjunction. The reason I like this approach is that local ISPs usually don't have the infrastructure or man-power that the larger named companies do; meaning if they go down, I want to be able to have another set of DNS forwarders to rely on, and vice versa. If for some unknown reason Google or Verizon's DNS servers are down, then my local ISP can take over and work.



                    Also, I've had issues with local ISPs and their caching times; they do vary throughout regions, but Google and Verizon always had the best TTL refreshes for me and my clients. There isn't a "best practice" per se, just different approaches like I've described.







                    share|improve this answer












                    share|improve this answer



                    share|improve this answer










                    answered May 9 '14 at 15:50









                    Brad BouchardBrad Bouchard

                    2,4232922




                    2,4232922





















                        2














                        What is "best" depends on your situation. A person who is in child domain might want to set his or her forwarders to their parent domain's DNS servers.



                        Or you might want to set your forwarders to a set of DNS servers that are authoritative for a particular domain that's internal to your organization.



                        Or you might not have internet access and so root hints won't help you.



                        Or you might prefer a particular forwarder to root hints for performance reasons.



                        Or if you don't really care about any of the above, then root hints work fine.






                        share|improve this answer























                        • Very good point on the part where you talked about not having Internet access; if this were the case then root hints wouldn't even matter. Good stuff.

                          – Brad Bouchard
                          May 9 '14 at 15:55















                        2














                        What is "best" depends on your situation. A person who is in child domain might want to set his or her forwarders to their parent domain's DNS servers.



                        Or you might want to set your forwarders to a set of DNS servers that are authoritative for a particular domain that's internal to your organization.



                        Or you might not have internet access and so root hints won't help you.



                        Or you might prefer a particular forwarder to root hints for performance reasons.



                        Or if you don't really care about any of the above, then root hints work fine.






                        share|improve this answer























                        • Very good point on the part where you talked about not having Internet access; if this were the case then root hints wouldn't even matter. Good stuff.

                          – Brad Bouchard
                          May 9 '14 at 15:55













                        2












                        2








                        2







                        What is "best" depends on your situation. A person who is in child domain might want to set his or her forwarders to their parent domain's DNS servers.



                        Or you might want to set your forwarders to a set of DNS servers that are authoritative for a particular domain that's internal to your organization.



                        Or you might not have internet access and so root hints won't help you.



                        Or you might prefer a particular forwarder to root hints for performance reasons.



                        Or if you don't really care about any of the above, then root hints work fine.






                        share|improve this answer













                        What is "best" depends on your situation. A person who is in child domain might want to set his or her forwarders to their parent domain's DNS servers.



                        Or you might want to set your forwarders to a set of DNS servers that are authoritative for a particular domain that's internal to your organization.



                        Or you might not have internet access and so root hints won't help you.



                        Or you might prefer a particular forwarder to root hints for performance reasons.



                        Or if you don't really care about any of the above, then root hints work fine.







                        share|improve this answer












                        share|improve this answer



                        share|improve this answer










                        answered May 9 '14 at 15:48









                        Ryan RiesRyan Ries

                        50.8k8118181




                        50.8k8118181












                        • Very good point on the part where you talked about not having Internet access; if this were the case then root hints wouldn't even matter. Good stuff.

                          – Brad Bouchard
                          May 9 '14 at 15:55

















                        • Very good point on the part where you talked about not having Internet access; if this were the case then root hints wouldn't even matter. Good stuff.

                          – Brad Bouchard
                          May 9 '14 at 15:55
















                        Very good point on the part where you talked about not having Internet access; if this were the case then root hints wouldn't even matter. Good stuff.

                        – Brad Bouchard
                        May 9 '14 at 15:55





                        Very good point on the part where you talked about not having Internet access; if this were the case then root hints wouldn't even matter. Good stuff.

                        – Brad Bouchard
                        May 9 '14 at 15:55











                        1














                        I do support the approach of having a "Big Name" nameserver alongside your local ISP as forwarders for reliability. But considering performance, I think the best thing to do is to benchmark with a tool like GRC's DNS Benchmark and use the servers that perform the best!






                        share|improve this answer



























                          1














                          I do support the approach of having a "Big Name" nameserver alongside your local ISP as forwarders for reliability. But considering performance, I think the best thing to do is to benchmark with a tool like GRC's DNS Benchmark and use the servers that perform the best!






                          share|improve this answer

























                            1












                            1








                            1







                            I do support the approach of having a "Big Name" nameserver alongside your local ISP as forwarders for reliability. But considering performance, I think the best thing to do is to benchmark with a tool like GRC's DNS Benchmark and use the servers that perform the best!






                            share|improve this answer













                            I do support the approach of having a "Big Name" nameserver alongside your local ISP as forwarders for reliability. But considering performance, I think the best thing to do is to benchmark with a tool like GRC's DNS Benchmark and use the servers that perform the best!







                            share|improve this answer












                            share|improve this answer



                            share|improve this answer










                            answered Aug 17 '15 at 18:29









                            N.BalauroN.Balauro

                            265




                            265





















                                1














                                One thing none of the other answers mentioned, and the most important reason why you do want to use your ISP DNS as your primary DNS forwarders, is that your ISP DNS gives you access to local Content Delivery Networks (CDNs).



                                A CDN caches internet data and uses DNS wizardry to point IP addresses to the CDN first. What this means is that the YouTube or Netflix video you're watching is cached on servers at the CDN. The CDN is located geographically close to you so that you stream the video from a server a few miles away instead of a few thousand miles away. This reduces latency and shortens download times.



                                If your office is located in Colorado Springs, for example, your ISP will redirect to CDNs in Colorado Springs and Denver. The nearest Google DNS server is in Iowa and doesn't have a clue where your office is or where the nearest CDN is located. This means that using Google DNS will send your browsing requests through Google's CDNs or directly to the authoritative host, increasing latency and slowing download speeds.



                                I recommend setting your ISP DNS as your primary DNS forwarders, but always include a fallback forwarder to a public DNS server just in case. The only exception to this is if the ISP DNS servers are unreliable, which you can test using GRC's DNS Benchmark as N.Balauro mentioned in their answer.



                                There are various paid DNS services (such as OpenDNS) that offer their own CDNs and have much better geographic coverage than Google's free DNS.






                                share|improve this answer



























                                  1














                                  One thing none of the other answers mentioned, and the most important reason why you do want to use your ISP DNS as your primary DNS forwarders, is that your ISP DNS gives you access to local Content Delivery Networks (CDNs).



                                  A CDN caches internet data and uses DNS wizardry to point IP addresses to the CDN first. What this means is that the YouTube or Netflix video you're watching is cached on servers at the CDN. The CDN is located geographically close to you so that you stream the video from a server a few miles away instead of a few thousand miles away. This reduces latency and shortens download times.



                                  If your office is located in Colorado Springs, for example, your ISP will redirect to CDNs in Colorado Springs and Denver. The nearest Google DNS server is in Iowa and doesn't have a clue where your office is or where the nearest CDN is located. This means that using Google DNS will send your browsing requests through Google's CDNs or directly to the authoritative host, increasing latency and slowing download speeds.



                                  I recommend setting your ISP DNS as your primary DNS forwarders, but always include a fallback forwarder to a public DNS server just in case. The only exception to this is if the ISP DNS servers are unreliable, which you can test using GRC's DNS Benchmark as N.Balauro mentioned in their answer.



                                  There are various paid DNS services (such as OpenDNS) that offer their own CDNs and have much better geographic coverage than Google's free DNS.






                                  share|improve this answer

























                                    1












                                    1








                                    1







                                    One thing none of the other answers mentioned, and the most important reason why you do want to use your ISP DNS as your primary DNS forwarders, is that your ISP DNS gives you access to local Content Delivery Networks (CDNs).



                                    A CDN caches internet data and uses DNS wizardry to point IP addresses to the CDN first. What this means is that the YouTube or Netflix video you're watching is cached on servers at the CDN. The CDN is located geographically close to you so that you stream the video from a server a few miles away instead of a few thousand miles away. This reduces latency and shortens download times.



                                    If your office is located in Colorado Springs, for example, your ISP will redirect to CDNs in Colorado Springs and Denver. The nearest Google DNS server is in Iowa and doesn't have a clue where your office is or where the nearest CDN is located. This means that using Google DNS will send your browsing requests through Google's CDNs or directly to the authoritative host, increasing latency and slowing download speeds.



                                    I recommend setting your ISP DNS as your primary DNS forwarders, but always include a fallback forwarder to a public DNS server just in case. The only exception to this is if the ISP DNS servers are unreliable, which you can test using GRC's DNS Benchmark as N.Balauro mentioned in their answer.



                                    There are various paid DNS services (such as OpenDNS) that offer their own CDNs and have much better geographic coverage than Google's free DNS.






                                    share|improve this answer













                                    One thing none of the other answers mentioned, and the most important reason why you do want to use your ISP DNS as your primary DNS forwarders, is that your ISP DNS gives you access to local Content Delivery Networks (CDNs).



                                    A CDN caches internet data and uses DNS wizardry to point IP addresses to the CDN first. What this means is that the YouTube or Netflix video you're watching is cached on servers at the CDN. The CDN is located geographically close to you so that you stream the video from a server a few miles away instead of a few thousand miles away. This reduces latency and shortens download times.



                                    If your office is located in Colorado Springs, for example, your ISP will redirect to CDNs in Colorado Springs and Denver. The nearest Google DNS server is in Iowa and doesn't have a clue where your office is or where the nearest CDN is located. This means that using Google DNS will send your browsing requests through Google's CDNs or directly to the authoritative host, increasing latency and slowing download speeds.



                                    I recommend setting your ISP DNS as your primary DNS forwarders, but always include a fallback forwarder to a public DNS server just in case. The only exception to this is if the ISP DNS servers are unreliable, which you can test using GRC's DNS Benchmark as N.Balauro mentioned in their answer.



                                    There are various paid DNS services (such as OpenDNS) that offer their own CDNs and have much better geographic coverage than Google's free DNS.







                                    share|improve this answer












                                    share|improve this answer



                                    share|improve this answer










                                    answered May 2 at 17:54









                                    ThomasThomas

                                    50621228




                                    50621228



























                                        draft saved

                                        draft discarded
















































                                        Thanks for contributing an answer to Server Fault!


                                        • Please be sure to answer the question. Provide details and share your research!

                                        But avoid


                                        • Asking for help, clarification, or responding to other answers.

                                        • Making statements based on opinion; back them up with references or personal experience.

                                        To learn more, see our tips on writing great answers.




                                        draft saved


                                        draft discarded














                                        StackExchange.ready(
                                        function ()
                                        StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f594179%2factive-directory-list-isp-dns-servers-as-forwarders%23new-answer', 'question_page');

                                        );

                                        Post as a guest















                                        Required, but never shown





















































                                        Required, but never shown














                                        Required, but never shown












                                        Required, but never shown







                                        Required, but never shown

































                                        Required, but never shown














                                        Required, but never shown












                                        Required, but never shown







                                        Required, but never shown







                                        Popular posts from this blog

                                        Wikipedia:Vital articles Мазмуну Biography - Өмүр баян Philosophy and psychology - Философия жана психология Religion - Дин Social sciences - Коомдук илимдер Language and literature - Тил жана адабият Science - Илим Technology - Технология Arts and recreation - Искусство жана эс алуу History and geography - Тарых жана география Навигация менюсу

                                        Bruxelas-Capital Índice Historia | Composición | Situación lingüística | Clima | Cidades irmandadas | Notas | Véxase tamén | Menú de navegacióneO uso das linguas en Bruxelas e a situación do neerlandés"Rexión de Bruxelas Capital"o orixinalSitio da rexiónPáxina de Bruselas no sitio da Oficina de Promoción Turística de Valonia e BruxelasMapa Interactivo da Rexión de Bruxelas-CapitaleeWorldCat332144929079854441105155190212ID28008674080552-90000 0001 0666 3698n94104302ID540940339365017018237

                                        What should I write in an apology letter, since I have decided not to join a company after accepting an offer letterShould I keep looking after accepting a job offer?What should I do when I've been verbally told I would get an offer letter, but still haven't gotten one after 4 weeks?Do I accept an offer from a company that I am not likely to join?New job hasn't confirmed starting date and I want to give current employer as much notice as possibleHow should I address my manager in my resignation letter?HR delayed background verification, now jobless as resignedNo email communication after accepting a formal written offer. How should I phrase the call?What should I do if after receiving a verbal offer letter I am informed that my written job offer is put on hold due to some internal issues?Should I inform the current employer that I am about to resign within 1-2 weeks since I have signed the offer letter and waiting for visa?What company will do, if I send their offer letter to another company