Re: Active Directory and multiple vlans
From: ptwilliams (ptw2001_at_hotmail.com)
Date: 01/22/05
- Next message: ptwilliams: "Re: Domain membership across a firewall"
- Previous message: ptwilliams: "Re: Secure Channel Password"
- In reply to: Ron Carver: "Re: Active Directory and multiple vlans"
- Messages sorted by: [ date ] [ thread ]
Date: Sat, 22 Jan 2005 11:41:10 -0000
VLANs are fine. Just remember two things:
1. Each VLAN will need to be defined in sites and services as a subnet and
then joined to the appropriate site.
2. DCs and multiple NICs can be quite tricky. Avoid this if possible
(unless, of course, you know what you're up to then go for it -just check
DNS thoroughly).
-- Paul Williams http://www.msresource.net http://forums.msresource.net "Ron Carver" <RonCarver@discussions.microsoft.com> wrote in message news:9D551D64-5697-4B3B-8063-681B64662F7D@microsoft.com... Basically we have our network subnetted off with vlans, but use AD for LDAP authentication on our windows and unix boxen. We were hoping to trunk the port the primary and backup domain controllers are on and assign multiple IP addresses, so the servers do not need to go through the firewall in order to authenticate to the AD server. Assuming AD doesn't care, I guess we could test it and see. "Herb Martin" wrote: > "Ron Carver" <Ron Carver@discussions.microsoft.com> wrote in message > news:47ED5610-BB1A-4A38-B981-B6A8FBF906E3@microsoft.com... > > I have not been able to find the answer to this anywhere, so lets try > here. > > > > I want to know if it is possible to set up active directory to work with > > multiple vlans? The idea was to set up the switch port the primary and > > backup DC are connected to as trunking so all vlans can talk to that > > port. > > Then, set up multiple IP's on the NIC (virtual ip's). > > It is unclear exactly what you intend, but in general > AD doesn't much care. > > Windows machines cannot effectively place two > NICs on the same "broadcast domain" but can run > effectively in most cases (check for WINS server > first) with different NICs on different broadcast > domains. > > Windows machines can easily have multiple IP > addresses on each NIC. > > > Does active directory support this? > > It's not really an AD issue (even though I don't > really understand precisely what you intend, the > network is not really a concern of AD as long > as it works and is IP.) > > -- > Herb Martin > > > > > > >
- Next message: ptwilliams: "Re: Domain membership across a firewall"
- Previous message: ptwilliams: "Re: Secure Channel Password"
- In reply to: Ron Carver: "Re: Active Directory and multiple vlans"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|
|