Re: AD between sites, but no local DC



In news:4C99E385-B426-4A3A-96A8-FF5A216D68BF@xxxxxxxxxxxxx,
Rossi <Rossi@xxxxxxxxxxxxxxxxxxxxxxxxx> stated, which I commented on below:
> Hi all,
>
> We have 5 branch offices and 1 main office.
> The main office has a AD running just fine.
>
> My question is, is it possible to connect users from the branch
> offices to the main office without running a local DC at each office ?
>
> We can run simple PPTP router to router to vpn the networks, but
> doesn't AD require some sort of broadcast ?
>
> Any help would be greatly appreciated, thanks !

Yes you can do that, but it depends on how many users are at each location.
Not knowing anything about your network, what I can say is if there are more
than 10 at each location (a nominal figure), it's recommended to place a DC
and enable those DCs as GCs at that location and setup Sites for each
location in AD to control logon traffic to only go to their respective DCs,
as well as controlling replication traffic between the DCs.

Download details Windows Server 2003 Active Directory Branch Office Guide:
http://www.microsoft.com/downloads/details.aspx?FamilyId=9353A4F6-A8A8-40BB-9FA7-3A95C9540112&displaylang=en

As far as broadcasts, no, AD does not use broadcasts, (I'm assuming you mean
NetBIOS broadcasts), not like NT4. However, other functionality uses
broadcasts that will not go across a router (VPNs are WAN links thru your
routers), such as Network Neighborhood or My Network Places, whatever you
like to call it. If you have Exchange running (any version), that requires
NetBIOS resolution as well.

In any case, anytime we setup interconnected sites, we usually use WINS to
provide this inter-subnet NetBIOS name resolution to insure services that
require NetBIOS resolution to work.

--
Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

If you are having difficulty in reading or finding responses to your post,
instead of the website you are using, if I may suggest to use OEx (Outlook
Express or any other newsreader of your choosing), and configure a newsgroup
account, pointing to news.microsoft.com. This is a direct link into the
Microsoft Public Newsgroups, and it is FREE and DOES NOT require a Usenet
account with your ISP. With OEx, you can easily find your post, track
threads, cross-post, and sort by date, poster's name, watched threads or
subject.

Not sure how? It's easy:
How to Configure OEx for Internet News
http://support.microsoft.com/?id=171164

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft MVP - Windows Server Directory Services
Microsoft Certified Trainer
Assimilation Imminent. Resistance is Futile.
Infinite Diversities in Infinite Combinations.
=================================


.



Relevant Pages

  • Re: IBM TV network--a history twist
    ... > Why do you assume the TV broadcasts would have been available to the ... Note that AT&T developed radio equipment for use in the telephone ... It's entirely possible IBM would have developed an experimental TV ... station and network as a test bed for new technologies and ending up as ...
    (rec.arts.tv)
  • RE: Weird entries in my firewall
    ... it was the agent for Promise Fasttrack RAID. ... the network to find other RAID cards on the network. ... And since my firewall is blocking them, ... and always broadcasts to port 712. ...
    (Security-Basics)
  • Re: UDP broadcast with 2 adapters
    ... not the effect of using INADDR_ANY in your bind call. ... only to the network to which that NIC belongs. ... I broadcast the info on specific UDP ports: ... And I receive broadcasts thus: ...
    (microsoft.public.win32.programmer.networks)
  • Re: Network browse windows network
    ... The computer browser service uses LAN broadcasts to built its lists. ... If odd workgroups are showing up in the list, some machine on your network belongs to that workgroup and is broadcasting that info on the network. ... The only purpose of WINS in the browsing situation is to allow browse masters to communicate across routers or WAN links (which block broadcasts). ...
    (microsoft.public.windows.server.networking)
  • Re: Clients Cannot Browse the Internet
    ... We currently have 2 branch offices and about 25 Road warriors The head ... VPN in, they actually VPN into the Head office.....and the Soho routes ... yet to try Phillips sugestion to add the static routes to the ISA Box ... "Are you trying to access resources on the test network from the branch ...
    (microsoft.public.isa)