Re: windows 2003 active directory and slow logons



Hi guys,

thank you all for your answers. I will draw out the scenario for you.

We have two structures DNS AD and BIND for the clients.

We delegate the AD zone to the BIND servers so the clients know how to reach
the DC's.

The remote site has a local DC that is also a DNS for the AD DNS integrated
domain. The DC DNS configuration is as follows

Primary DNS points to itself
Secondary DNS points to the linux BIND DNS

This is our configuration for all the other sites as well.

The sites and subnets is defined with the ip address of 10.30.x.x which
covers the local site.

The clients all point to a linux server for DNS as this server is used for
all the clients.

The issue is intermittent, so sometimes the clients will authenticate to the
local server...

Day 1 - client A authenticates against local DC
Day 2 - client A (same client as above) authenticates to remote DC



"Jorge de Almeida Pinto [MVP]" wrote:

is the DC also a DNS server?
are clients/servers pointing to that DNS server?
do you have a site for the location the DC and the clients are in?
are subnets within that location linked to that site?

--

Cheers,
(HOPEFULLY THIS INFORMATION HELPS YOU!)

# Jorge de Almeida Pinto # MVP Windows Server - Directory Services

BLOG (WEB-BASED)--> http://blogs.dirteam.com/blogs/jorge/default.aspx
BLOG (RSS-FEEDS)--> http://blogs.dirteam.com/blogs/jorge/rss.aspx
------------------------------------------------------------------------------------------
* This posting is provided "AS IS" with no warranties and confers no rights!
* Always test before implementing!
------------------------------------------------------------------------------------------
#################################################
#################################################
------------------------------------------------------------------------------------------
"exchange_confused" <exchangeconfused@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in
message news:C5426483-90F4-43E2-B8DB-596CF0F3DB66@xxxxxxxxxxxxxxxx
We recently brought in a new site into our windows 2003 active directory
domain.
The site has a local domain controller and the subnet range was setup in
sites and services.

When users login they are authenticated by other domain controllers within
our AD domain and not by the local DC. However this is random.

When the user is authenticated by other DC's in the AD domain the user
login
takes up to 30 minutes.

The users O/S is based on Windows XP

The question is why isnt the local DC authenticating all the local
machines?

The DC is installed with Windows 2003 STD server.

Thanks




.



Relevant Pages

  • Re: Permissions across 2 Forrest
    ... Primary DNS server on 1.x and the 18.x network along with DHCP and WINS. ... For instance ForrestA DNS is now a secondary for Forrest B and vise versa. ... WINS clients must use the same "WINS Database"* ...
    (microsoft.public.windows.server.active_directory)
  • Re: Client installation frustration.
    ... not, apparently, any DNS lookup issues on my network. ... connection's addresses in DNS" and "Use this connection's DNS suffix in DNS ... is a file and print server that we have at one of our secondary sites. ... Is there any way to cancel all current requests to install clients? ...
    (microsoft.public.sms.admin)
  • Re: problem with xp clients and windows 2003
    ... We now have the cross cable running from the room's switch ... >> policy but logs into the server. ... >> aware that this is a DNS issue but I have TRIPLE checked the DNS ... >> If I do NSlookup from the problematic clients, ...
    (microsoft.public.windows.server.networking)
  • Re: windows 2003 active directory and slow logons
    ... DHCP provided by linux box and clients get ip addresses from the following ... Just to let you know as well as I was reading your website, this server sits ... The remote site has a local DC that is also a DNS for the AD DNS ... Day 2 - client A authenticates to remote DC ...
    (microsoft.public.windows.server.active_directory)
  • RE: VPN Clients Not Registering in AD DNS
    ... via VPN, the DNS records of the VPN clients are unable to be registered. ... Windows 2003 server? ... please let me know whether the clients get the IP ...
    (microsoft.public.windows.server.sbs)

Loading