什么是专用 Azure DNS 区域What is a private Azure DNS zone

Azure 专用 DNS 提供可靠、安全的 DNS 服务来管理和解析虚拟网络中的域名,无需添加自定义 DNS 解决方案。Azure Private DNS provides a reliable, secure DNS service to manage and resolve domain names in a virtual network without the need to add a custom DNS solution. 借助专用 DNS 区域,可以使用自定义域名而不使用当前可用的由 Azure 提供的名称。By using private DNS zones, you can use your own custom domain names rather than the Azure-provided names available today.

专用 DNS 区域中包含的记录无法通过 Internet 进行解析。The records contained in a private DNS zone aren't resolvable from the Internet. 针对专用 DNS 区域的 DNS 解析只能在链接到它的虚拟网络中进行。DNS resolution against a private DNS zone works only from virtual networks that are linked to it.

可以通过创建虚拟网络链接,将专用 DNS 区域链接到一个或多个虚拟网络。You can link a private DNS zone to one or more virtual networks by creating virtual network links. 还可以启用自动注册功能,以便为虚拟网络中部署的虚拟机自动管理 DNS 记录的生命周期。You can also enable the autoregistration feature to automatically manage the life cycle of the DNS records for the virtual machines that gets deployed in a virtual network.

限制Limits

若要了解可以在订阅中创建的专用 DNS 区域数量以及专用 DNS 区域中支持的记录集数量,请参阅 Azure DNS 限制To understand how many private DNS zones you can create in a subscription and how many record sets are supported in a private DNS zone, see Azure DNS limits

限制Restrictions

  • 不支持带单一标签的专用 DNS 区域。Single labeled private DNS zones aren't supported. 专用 DNS 区域必须有两个或两个以上的标签。Your private DNS zone must have two or more labels. 例如,contoso.com 包含两个标签,使用句点分隔。For example contoso.com has two labels separated by a dot. 专用 DNS 区域最多可以有 34 个标签。A private DNS zone can have a maximum 34 labels.
  • 无法在专用 DNS 区域中创建区域委派(NS 记录)。You can't create zone delegations (NS records) in a private DNS zone. 如果要使用子域,可以直接将该域创建为专用 DNS 区域。If you intend to use a child domain, you can directly create the domain as a private DNS zone. 然后,你可以将其链接到虚拟网络,而不需要从父区域设置名称服务器委派。Then you can link it to virtual network without setting up a nameserver delegation from the parent zone.

后续步骤Next steps