Skip to content
LogoTechnipages
technipages logo
  • Topics
        • Android
        • Browsers
        • Gaming
        • Hardware
        • Internet
        • iPhone
        • Linux
        • macOS
        • Office
        • Reviews
        • Software
        • Windows
        • Definitions
  • Product Reviews
  • Downloads
  • About

Use Active Directory Domain Services to Block Website

Mitch BartlettNovember 15, 2018 Comments (2)
Active Directory logo

You can block or redirect a website using settings on your firewall or router. But did you know that you can block or redirect websites using Active Directory Domain Services (DNS) as well? Just use these steps.

This tutorial assumes you have Administrator rights in your Active Directory Environment, with access to Microsoft Management Console.

Creating Forward Lookup Zone

  1. Select “Start“, type “mmc.exe“, then press “Enter“.
  2. The Microsoft Management Console appears. Select “File” > “Add/Remove Snap In…“.
  3. Add the “DNS” snap in, then select “OK“
  4. Select “DNS” on the left pane. You should be prompted to “Connect to DNS Server“. Select “This computer” if you’re logged into the DNS server, or select “The following computer” and enter the domain name or IP address of the DNS server you wish to connect to. Select “OK” when you are done.
  5. Now expand the server name under DNS and right-click “Forward Lookup Zones” and select “New Zone“.
  6. The New Zone Wizard appears. Select “Next”.
  7. Select “Primary Zone“, then select “Next“.
  8. Select “To all DNS servers running on domain controllers in this domain“, then select “Next“.
  9. For the “Zone name“, type the URL for the website you wish to block (i.e. facebook.com, reddit.com, etc.), then select “Next“.
  10. Select “Do not allow dynamic updates“, then select “Next” > “Finish“. You now have set a Forward Lookup Zone that will “take over” any requests to that domain on your network.

Note: It may take time for this setting to propagate to clients. You may want to restart, or use the ipconfig /flushdns command to be sure DNS queries are not cached in any way.

 


Redirecting the URL

If you would like to redirect the URL to another URL, you can use these steps:

  1. Expand DNS and “Forward Lookup Zones” in the MMC console.
  2. Right-click on the zone you created, then choose “Other New Records…” > “Domain Alias (DNAME)” > “Create Record…“.
  3. Leave “Alias name” blank. For “Fully qualified domain name (FQDN) for target domain“, type the URL for the site you would like to redirect to, then select “OK“.

Now any time somebody tries to go to the web address you set the Forward Lookup Zone for, they will redirect to the new target domain.

Categories: Windows

Author Mitch Bartlett

My name is Mitch Bartlett. I've been working in technology for over 20 years in a wide range of tech jobs from Tech Support to Software Testing. I started this site as a technical guide for myself and it has grown into what I hope is a useful reference for all. Mitch's Favorite Gear ATX Graphics Card CanaKit Raspberry Pi 3

You Might Also Like

  • Windows 10: Enable Hardware-Accelerated GPU Scheduling

    Mel HawthorneWindows
  • How to Take Screenshot on Windows 11 Top 5 Solutions

    How to Take Screenshot on Windows 11: Top 5 Solutions

    Susan SheffieldWindows
  • Google Chrome Stock Image

    Chrome: How to Open a PDF Using Adobe Reader

    Judy SanhzBrowsers
  • How to Fix Explorer.exe Class Not Registered Error in Windows 11

    How to Fix Explorer.exe: Class Not Registered Error in Windows 11

    Susan SheffieldWindows

Comments

  1. Maany says:
    December 23, 2019 at 2:09 am

    What if I need to exclude certain users from this restriction? how can i do that?

  2. Krishna says:
    November 15, 2018 at 10:21 pm

    I want to prevent end users to restrict one application during 7:AM to 9:AM. This application is installed on all the end user Desktops/Laptops..

    Can I schedule this restriction?

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

300x600
Turning on Triple Touch Zoom on Android

Turning on Triple Touch Zoom on Android

How to Connect Outlook 2023 to Gmail

How to Connect Outlook 2023 to Gmail

Netflix: Change Password

Netflix: Change Password

Everything You Need to Know About WhatsApp Delete for Me

Step-by-Step Guide: How to Use WhatsApp on Your Computer

Android: Enable or Disable Background Data

Android: Enable or Disable Background Data

300x250
profile pic

The Experts Behind Technipages

My name is Mitch Bartlett. I've been working in technology for over 20 years in a wide range of tech jobs from Tech Support to Software Testing. I started this site as a technical guide for myself and it has grown into what I hope is a useful reference for all.

Learn More

300x250 2
technipages logo white
linkedin icon

Technipages is part of Guiding Tech Media, a leading digital media publisher focused on helping people figure out technology. Visit guidingtechmedia.com to learn more about our mission and team.

© 2026 Guiding Tech Media All Rights Reserved

  • About Us
  • Contact
  • Legal & Privacy

© 2026 Guiding Tech Media All Rights Reserved

Information from your device can be used to personalize your ad experience.
Do not sell my personal information.