Default resolver for a VNet, at 168.63.129.16, which answers with records from private DNS zones linked to that VNet; a custom DNS server has to forward queries to it to resolve those records.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Azure-provided DNS in context, with comparison tables and the common traps.
Terms in this definition
- VNet
A private network belonging to a single subscription and region and covering all of that region's availability zones. A VM can only use a VNet located in the same region.
- 168.63.129.16
Special platform address (WireServer) through which Azure delivers the VM agent channel, built-in DNS, DHCP and load balancer health probes. Traffic to it must stay open, or those platform functions stop working.
- DNS
The system that turns names into addresses. In Azure, private endpoints depend on private DNS zones, which are queried through 168.63.129.16.
- Custom DNS server
DNS server addresses configured on a VNet, or overridden on a NIC, in place of Azure-provided DNS, such as AD DS domain controllers; VMs need to be able to reach that private IP.
Related terms
- SRV record
DNS record locating a service, such as the domain controller entries that AD DS clients rely on. Azure-provided DNS cannot serve the SRV records AD needs.