So I have a Windows Server 2016 server setup running an active directory with a bunch of users and computers that are related to the small private school we run here. I have a custom linux dns server setup in VM that I use as a DNS forwarder to block access to websites and ads and such to all clients grabbing DNS from the server; which is all clients haha. But the issue I am having (its not really an issue, just was looking to do it better) is because clients grab DNS from the server's DNS all the DNS rules apply to the server it self. So for example; on my dns server I am blocking youtube.com*; on my server if I go to youtube its blocked aswell. Which with the way its currently setup makes complete sense. I am hope to be enlightened by another way though? The issue is all clients need there primary DNS to be set to the server to grab GPO and login info, etc. So I can't just directly push a custom DNS server to all clients through there DNS. I forward a DNS server through my windows server's DNS. Now obviously I don't need to watch YouTube on my server haha; but we are implementing a lot harder restrictions on the school; actually only allowing about 7 domains. Which would in turn also would effect my server; and I don't want those restrictions on the server.
Sorry that was a lot of info and I said DNS like a hundred times; but thanks in advance!
Sorry that was a lot of info and I said DNS like a hundred times; but thanks in advance!