I’ve been in the process of redoing my IPA domain at home. I decided that I wanted a new domain while not changing ID’s, but also allowing me to control some DNS domains that are external in the process.
Traditionally, I have managed some domains with IPA while guaranteeing that some are available externally and that if my IPA servers were down during maintenance, bind on my AlmaLinux router would still serve DNS for my network. This worked for the most part, actually, though I only had that one name server that was known/usable. (You can imagine what happens when the one and only name server for a domain stops responding to requests.)
[Read More]