Re: AD between sites, but no local DC
- From: "Herb Martin" <news@xxxxxxxxxxxxxx>
- Date: Mon, 9 Jan 2006 01:22:28 -0600
"Rossi" <Rossi@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:4C99E385-B426-4A3A-96A8-FF5A216D68BF@xxxxxxxxxxxxxxxx
> Hi all,
>
> We have 5 branch offices and 1 main office.
> The main office has a AD running just fine.
>
> My question is, is it possible to connect users from the branch offices to
> the main office without running a local DC at each office ?
Sure. Make them part of the main SITE or give them a
separate site if you have a reason but it's not normally
necessary.
[SITE is a technical term in AD so use 'location' when you
wish to differentiate a place from an AD site. Normally
each location or place IS a site but that is mostly to control
AD replication and authentication so sites without a DC
aren't usually defined.]
If you do not create separate sites you SHOULD make the
subnet from the branch locations part of the main site; should
you ever add DCs (and sites) at another location the clients
will then prefer to authenticate from main (since they are
technically IN that main site.)
> We can run simple PPTP router to router to vpn the networks, but doesn't
> AD
> require some sort of broadcast ?
Not for domain authentication and normal client (AD) access.
Maybe for OTHER things but not for AD.
If you wish browsing to work you need WINS server for
multiple subents (and of course WANS) anyway, but that
is NOT AD.
> Any help would be greatly appreciated, thanks !
--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]
.
- Prev by Date: Re: Domain vs local logon
- Next by Date: Re: FSMO role issues after demoting and re-promoting server
- Previous by thread: Re: AD between sites, but no local DC
- Index(es):
Relevant Pages
|
Loading