Re: Replicate only 1 OU to another Domain Controller;



Hi Paulie,

if you are in the hosting business, I would recommend you contact Microsoft
and discuss with them about their service offering for hosters. See
www.microsoft.com/hosting. I saw the offering a couple of years ago, and it
documented how to configure and provision AD so that each hosted customer
would only see its portion of AD.

Xavier




"paulie" <paulie@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:D45103C5-55EF-49FD-BA98-C110C605BA16@xxxxxxxxxxxxxxxx
> We have several Organizational Units and "virtual domains" with
> alternative
> UPN suffixes all under our one main domain on Windows Server 2003 AD.
> The entire AD and all of it's OU's is being replicated to several domain
> controllers within our company.
> Is it possible to replicate the AD with only 1 OU to another domain
> controller? We have a company hosted on our server farm and we need an
> domain
> controller at that company's site office with DFS so they can work on the
> files locally but we don't want all the other OU's to replicate to it as
> well.
> All they should be able to see is their own OU under our main domain but
> not
> our entire AD with the other company's OU's.
> If it's not possible to replicate only a single OU, is it possible to hide
> all the other OU's and only have the one visable?
> Hopefully someone has any thoughts or suggestions on how to do this if
> it's
> possible.
>
> Thanks so much for your help.
>
> Regards,
> Paul


.



Relevant Pages

  • Re: Creating a Child Domain OFFLINE
    ... > Site A exists and is the forest domain controller. ... Since connectivity between sites B & C may not ... > Leave it there long enough to replicate all the domain info. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Active Directory 2003: Intra-Site Replication of Schema Partit
    ... my repadmin results that the schema partition is getting updated from the hub ... replicate at least every 60 minutes, if the partition hasn't been updated. ... Branch-Site\BranchDC01 via RPC ... controller, things go back to 15 minutes. ...
    (microsoft.public.windows.server.active_directory)
  • DCPromo - replication failed "Directory Object not found"
    ... FOREST: bigad.local (AD Zone DNS) ... If this is a replica domain controller, ... Source domain controller address: ... This domain controller will be unable to replicate with the source domain ...
    (microsoft.public.windows.server.active_directory)
  • Re: Replacing an existing Domain Controller
    ... My recommendation would be to setup additional controller and replicate it ... > groups along with their security settings. ...
    (microsoft.public.windows.server.general)