Policy overview

Key metadata and intent for this policy.

ClassComputer
CategorySystem > Net Logon > DC Locator DNS Records
Supported onAt least Windows Server 2012, Windows 8 or Windows RT

Supported OS tags: Windows10, Windows10RT, Windows11, Windows8, Windows81, WindowsRT, WindowsRT81, WindowsServer2012, WindowsServer2012R2, WindowsServer2016

This policy setting configures how a domain controller (DC) behaves when responding to a client whose IP address does not map to any configured site. Domain controllers use the client IP address during a DC locator ping request to compute which Active Directory site the client belongs to. If no site mapping can be computed, the DC may do an address lookup on the client network name to discover other IP addresses which may then be used to compute a matching site for the client. The allowable values for this setting result in the following behaviors: 0 - DCs will never perform address lookups. 1 - DCs will perform an exhaustive address lookup to discover additional client IP addresses. 2 - DCs will perform a fast, DNS-only address lookup to discover additional client IP addresses. To specify this behavior in the DC Locator DNS SRV records, click Enabled, and then enter a value. The range of values is from 0 to 2. If you do not configure this policy setting, it is not applied to any DCs, and DCs use their local configuration.

Internal name
Netlogon_AddressLookupOnPingBehavior
Policy ID
51c2bb69acee
Elements
1

Registry values

How enabled and disabled states update the registry.

No explicit registry values are set for enabled or disabled states.

Policy elements

Inputs and configuration options exposed by this policy.

ElementTypeRegistry mappingConstraints & behavior
Address lookup behavior:
ID Netlogon_AddressLookupOnPingBehaviorLabel
decimal
HKLM\Software\Policies\Microsoft\Netlogon\Parameters\AddressLookupOnPingBehavior
Type REG_DWORD
Range: ? to 2

Other policies in this category

Explore related policies at the same level.

View all policies in this category