Answer for:

Create a private network with the same or similar domain name

Message 5 of 4

View entire thread
0 Votes

Let's say your public domain (website) is:

You should avoid using just that for any internal active directory network (it will cause you problems later on with DNS names, and possibly leak internal FQDN/records to the Internet which is a security risk).

When setting up active directory you can still use your public domain, but the AD should be a separate zone, this is often referred to as NetBios domain name, or pre-Windows 2000 domain name, for example... or

You can also use any of the following non-public and un-registerable root domains like...


...or with a NetBios domain...


In any case, the second "zone" (really a sub-domain) is what will show up in the "logon to" drop-down box at CTRL+ALT+DEL, for example...

FQDN: Logon domain: INTERNAL
Full computer names:,,, etc.

FQDN: newco.example Logon domain: NEWCO
Full computer names: pc1.newco.example, pc2.newco.example, server5.newco.example