• Skip to main content
  • Skip to primary sidebar

Technipages

Tutorials and fixes for smartphone, gadget, and computer problems

  • Topics
    • Android
    • Browsers
    • Gaming
    • Hardware
    • Internet
    • iPhone
    • Linux
    • macOS
    • Office
    • Reviews
    • Software
    • Windows
    • Definitions
  • Product Reviews
  • Downloads
  • About

Use Active Directory Domain Services to Block Website

November 15, 2018 by Mitch Bartlett 2 Comments

You can block or redirect a website using settings on your firewall or router. But did you know that you can block or redirect websites using Active Directory Domain Services (DNS) as well? Just use these steps.

This tutorial assumes you have Administrator rights in your Active Directory Environment, with access to Microsoft Management Console.

Creating Forward Lookup Zone

  1. Select “Start“, type “mmc.exe“, then press “Enter“.
  2. The Microsoft Management Console appears. Select “File” > “Add/Remove Snap In…“.
  3. Add the “DNS” snap in, then select “OK“
  4. Select “DNS” on the left pane. You should be prompted to “Connect to DNS Server“. Select “This computer” if you’re logged into the DNS server, or select “The following computer” and enter the domain name or IP address of the DNS server you wish to connect to. Select “OK” when you are done.
  5. Now expand the server name under DNS and right-click “Forward Lookup Zones” and select “New Zone“.
  6. The New Zone Wizard appears. Select “Next”.
  7. Select “Primary Zone“, then select “Next“.
  8. Select “To all DNS servers running on domain controllers in this domain“, then select “Next“.
  9. For the “Zone name“, type the URL for the website you wish to block (i.e. facebook.com, reddit.com, etc.), then select “Next“.
  10. Select “Do not allow dynamic updates“, then select “Next” > “Finish“. You now have set a Forward Lookup Zone that will “take over” any requests to that domain on your network.

Note: It may take time for this setting to propagate to clients. You may want to restart, or use the ipconfig /flushdns command to be sure DNS queries are not cached in any way.

 


Redirecting the URL

If you would like to redirect the URL to another URL, you can use these steps:

  1. Expand DNS and “Forward Lookup Zones” in the MMC console.
  2. Right-click on the zone you created, then choose “Other New Records…” > “Domain Alias (DNAME)” > “Create Record…“.
  3. Leave “Alias name” blank. For “Fully qualified domain name (FQDN) for target domain“, type the URL for the site you would like to redirect to, then select “OK“.

Now any time somebody tries to go to the web address you set the Forward Lookup Zone for, they will redirect to the new target domain.

You Might Also Like

  • Active Directory: How to Check Domain and Forest Functional Level
    Active Directory: How to Check Domain and Forest Functional…
  • How to Add or Delete Printers in Active Directory
    How to Add or Delete Printers in Active Directory
  • How to Make Active Directory Replicate Instantly
    How to Make Active Directory Replicate Instantly
  • Active Directory: Fix Replication Error 8203
    Active Directory: Fix Replication Error 8203
  • How to Find Computer Locking Active Directory Account
    How to Find Computer Locking Active Directory Account
  • Windows 10 & 11: Install Active Directory Users and Computers
    Windows 10 & 11: Install Active Directory Users and…

Filed Under: Windows

Reader Interactions

Comments

  1. Maany says

    December 23, 2019 at 2:09 am

    What if I need to exclude certain users from this restriction? how can i do that?

  2. Krishna says

    November 15, 2018 at 10:21 pm

    I want to prevent end users to restrict one application during 7:AM to 9:AM. This application is installed on all the end user Desktops/Laptops..

    Can I schedule this restriction?

Did this help? Let us know!

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Primary Sidebar

Recent Posts

  • How to Fix Explorer.exe: Class Not Registered Error in Windows 11
  • How to Fix Explorer.exe Doesn’t Load at Startup Issue
  • How to Enable/Disable Efficiency Mode in Windows 11
  • How to Create and Edit a Playlist on YouTube Music
  • Microsoft Edge Collections: What It is and How to Use It
  • YouTube Premium: How to Disable/Enable Background Playback
  • How to Update Apps on iPad (iPadOS 16.3.1)
  • How to Fix Outlook Rules Are Not Supported for This Account

Who’s Behind Technipages?

Baby and Daddy My name is Mitch Bartlett. I've been working in technology for over 20 years in a wide range of tech jobs from Tech Support to Software Testing. I started this site as a technical guide for myself and it has grown into what I hope is a useful reference for all.

You May Also Like

  • Public Domain
  • Server Message Block (SMB) Protocol

© Copyright 2023 Guiding Tech Media · All Rights Reserved · Privacy