We’ve recently noticed an issue that has probably been going on for a while now, where MacOS clients are registering their IP addresses as A records with the local DNS servers here. That’s great for when they are on the LAN, but when they register their IPs when VPNed in it becomes a problem if they never update them. So what were seeing is a VPN client will send to say server-dc04 it’s name and IP as say 172.11.12.12 and it will also send it’s home wifi IP of say 192.168.0.20.
So we have 2 records for it showing in DNS. And that’s fine, but the next day when they VPN in again, if they get a new IP address they will register that new IP, but not as an update, rather just an addition. This leaves it up to the DNS servers to ‘scavenge’ stale records, and these DNS/DCs only do this for our acme.com domain once every 7 days.
