set up first child DC in a remote site



Hi experts,
I am planing to set up a DC in a remote site. The new server is alredy
sitting in the new site.
This DC will be the first DC in this site and will be a child domain of the
existing domain/forest.
This DC will also run AD integrated DNS service for the domain
childdomain.parentdomain.local.

Could any one tell me what is the sequence of actions I need to do to achive
this goal, or guide me a documentation?
Below is my thoughts:
1. setup a VPN tunnelling between two firewalls in two sites;
2. on the DC of parent domain (the current domain), create a new site and
linked with a new subnet for the remote site;
3a. on the new server at remote site, add the DC of parent domain into the
HOSTS file and add the new server into the HOSTS file on parent DC, so that
name resolution can work both direction.Or if this does not work
3b. on the new server in the NIC TCP/IP settings add parent DC as primary
DNS (it's AD-integrated).
4. on the new server at remote site, on which basic windows server 2003 R2
is installed, run dcpromo and select first DC of a child domain and wait for
the AD installed. (the AD is not very big and has already extended to R2
schema)
5. wait for 15 minutes or 1 hour and check the site replication

I guess with step 3b the AD installation will most likely to be successful.
However, I am not sure whether the DNS will work as we want.
Should I do anything on the parent DC (integrated DNS) for the child domain
before or after runing the dcpromo on the new server?
Will this dcpromote automatically install the DNS service on the new server?
If it does, with the NIC primary DNS points to parent DC will this DNS
service work and get DNS replicated? What time should the NIC DNS point to
itself?

Thanks in advance!




.



Relevant Pages

  • VPN - GPO Problems
    ... back to the remote site. ... The only way I could get clients to connect from the remote site thru ... showing up in DNS, I can ping by name, and connect using UNC path names. ... DNS server list of restricted interfaces contains IP addresses that are not ...
    (microsoft.public.win2000.active_directory)
  • VPN - GPO Problem
    ... back to the remote site. ... The only way I could get clients to connect from the remote site thru ... showing up in DNS, I can ping by name, and connect using UNC path names. ... DNS server list of restricted interfaces contains IP addresses that are not ...
    (microsoft.public.windows.group_policy)
  • Re: set up first child DC in a remote site
    ... Since step 3 is done before installing the DNS on it, ... necessary to put the DNS server pointing to the parent domain. ... DC on the Child doamin and it's IP Address, at the moment that you create ...
    (microsoft.public.windows.server.active_directory)
  • Re: DC of the Parent Domain cant Ping the hostname of the DC Chil
    ... I didn't know we still have to setup WINS between Parent - Child domains. ... name not a dns name, so pinging a FQDN that works tells me that your dns is ... sake of argument" also acting as File Server in head office with all ... The Parent, host1, knows about the child domain and its DC in the DNS ...
    (microsoft.public.windows.server.active_directory)
  • Re: Second site VPN, DC and DNS woes
    ... Ran Configure your Server Wizard and added DNS. ... Install new Win 2003 R2 server at remote site. ... So for the time being I've rolled everything back to previous settings ...
    (microsoft.public.windows.server.sbs)

Loading