General AD questions



Situation = Very simple single domain, one subnet, Windows 2003 AD, 2
DC's

1. DNS is running on both DC's. Is it better to have the DC's
pointing to each other as the primary DNS server and themselves as the
alternate, or the other way around?

2. Secure only or secure and non-secure dynamic updates? Why?

3. In the small, simple environment that I have, it's best
for both DC's to be a GC servers, right?

4. Why are there distinct options for raising the domain functional
level and raising the forest functional level and why aren't they
"greyed" out after doing so?

5. At what point during the setup of a new 2003 AD forest/domain
should an external time source be configured?

6. When setting up a simple AD domain like I've described, should you
do things like configuring an external time source and configuring a
subnet for the site be done before bringing additional DC's online, or
does it matter?

.



Relevant Pages

  • Re: General AD questions
    ... DNS is running on both DC's. ... you should be at Windows 2003 mode for both forest and domain ... the external time source so it makes sense to do it after installing the ... > do things like configuring an external time source and configuring a ...
    (microsoft.public.windows.server.active_directory)
  • RE: Error configuring component - Email
    ... When the DNS forward look up zone is not set ... Select the Change Button on the server and verify the correct computer ... Error configuring component - Email ... | calling pdispPPPBag->QueryInterface. ...
    (microsoft.public.windows.server.sbs)
  • Re: applying computer settings takes a lot of time
    ... So in the moments the computer connected to another subnet to reach a DC/DNS server to authenticate and apply configuration settings, ... So is there a DNS server in there subnet available? ... What kind of connection is between the locations? ... Connection-specific DNS Suffix. ...
    (microsoft.public.windows.group_policy)
  • Re: applying computer settings takes a lot of time
    ... Subnet 10 is for server and printer. ... So do you have a DNS server in the client location? ...
    (microsoft.public.windows.group_policy)
  • Re: Site Creation
    ... CO-DC in NY-site, the only thing that you sholud do after moving CO-DC ... I'm thinking NY because the 192.168.200.x subnet has to ... reregistering appropriate SRV records in DNS. ... If you have VPN tunnel between sites this shouldn't be ...
    (microsoft.public.windows.server.general)