Re: Intersite Replication using NAT and firewall between sites

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



Off the top of my head, AD replication requires the following:

DNS (53)
Kerberos (88)
RPC Endpoint Mapper (135)
LDAP (389)
SMB (445)
GC (3268)
RPC Random High ports (1024 - 65536)


Do a quick search though, as this is from memory. I've answered this
questions numerous times before, when I had my notes with me...

You'll also need to allow Time (123) between these DCs, and ICMP for GPO
application. It should work with SMB/TCP/IP however you might need to add
support for TCP/NetBT (you certainly will if cross-site logons occur from
down-level clients).

--
Paul Williams
Microsoft MVP - Windows Server - Directory Services
http://www.msresource.net | http://forums.msresource.net


.