Re: Domain unavailable when link down to the site with PDC

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



In this case yes, a Global Catalog server should be available to log on,
unless you are a member of Domain Admins and have appropriate setting
configured.

--
Dmitry Korolyov [d__k@xxxxxxxxxxxxxxxxxxxxxx]
MVP: Windows Server - Directory Services


"Max D" <MaxD@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:8D56994E-010A-4D7F-AF02-2F46FB09ECC9@xxxxxxxxxxxxxxxx
> OK all domain controllers are registered in DNS (srv records), but no DC
> on B
> was GC...
> I hope it was the problem, but it's difficult to test since I need to cut
> the link between my 2 sites.
>
> Thank you!
>
>
> "Enkidu" wrote:
>
>> Max D wrote:
>> > Hello,
>> >
>> > I have a domain D whit 2 sites A and B. There are 2
>> > DCs on each site.
>> > On A there is the PDC (W2K SP4)
>> > On B one W2KSP2 and one W2K SP4
>> >
>> > Today the link between A and B has been cut and the
>> > users on B have never been able to open a session
>> > on D, although there 2 DCs on their site and well
>> > replicated.
>> >
>> > Where could be the problem? The configuration of
>> > the DCs on B seem to be correct.
>> >
>> At least one of the DCs in Site B should be a Global Catalog
>> server. Is this so?
>>
>> Cheers,
>>
>> Cliff
>>
>> --
>>
>> Barzoomian the Martian - http://barzoomian.blogspot.com
>>


.



Relevant Pages

  • Re: Active Directory Admin privileges
    ... The solution therefore as to come from MS and the best attempt at it is coming out of Redmond in Longhorn and is called Read Only DCs with delegated administrator. ... Forests, regardless of the number of domains, should have one small set of domain admins who are also enterprise admins who do management of all DCs. ... No one else should have any builtin rights such as account operator or server operator or even local logon onto Domain Controllers. ... Any time an admin in a child domain wanted access to sensitive material back at corp hq they could have gotten that access unless you were using some form of third party encryption that has no dependence on Windows security. ...
    (microsoft.public.security)
  • RE: I cant start new master DC, help
    ... I would also make sure that all DCs have a copy of the AD integrated DNS. ... as I can see in errors, problem is my DNS configuration on that server. ... I thoght becouse it is server which holdes all master roles, ...
    (microsoft.public.windows.server.active_directory)
  • Re: Server Operators
    ... the only folks who should have access to DCs are Domain Admins. ... There is no way to protect against say the server ops becoming domain admins or even enterprise admins if they know what they are doing. ...
    (microsoft.public.windows.server.active_directory)
  • RE: Local IP on DC
    ... Generally people will try to keep Domain Controllers off of a public IP ... Microsoft ISA server. ... recommended configuration. ... Is it advisable to configure local IP on DCs? ...
    (microsoft.public.windows.server.networking)
  • Re: SBS SP 1 installation error
    ... Component Name: Microsoft Exchange Forest Preparation ... Component Name: Server Configuration ... Component Name: Windows Server 2003 Configuration ... Component Name: Networking Configuration ...
    (microsoft.public.windows.server.sbs)