RE: Adding a Remote Office Domain Controller

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



Hi Ben,

Thanks for using the SBS newsgroup. Many thanks for DesertTroll's input.

DesertTroll's suggestion is good. I would like to provide more information
about the remote branch office scenario.

Suggestion 1:
================
For licensing question, the SBS 2003 supports the branch office scenario.
We need configure licensing on the Windows DC server in the remote site.
You can refer to the following article to get detail information:

884453 How to install Small Business Server 2003 in an existing Active
http://support.microsoft.com/?id=884453

Also for the licensing concerns, I suggest that you contact our licensing
office to consultant. The call is free. You can call 1-800-426-9400 (select
option 4), Monday through Friday, 6:00 A.M. to 6:00 P.M. (PST) to speak
directly to a Microsoft licensing specialist. Worldwide customers can use
the Guide to Worldwide Microsoft Licensing Sites
http://www.microsoft.com/licensing/index/worldwide.asp to find contact
information in their locations.

More information:

Detail price information about the SBS 2003 CAL:
http://www.microsoft.com/windowsserver2003/sbs/howtobuy/pricing.mspx

Client Access Licensing for Windows Small Business Server 2003
http://www.microsoft.com/windowsserver2003/sbs/howtobuy/CALs.mspx

Frequently Asked Questions About Windows Small Business Server 2003
Licensing.
http://www.microsoft.com/windowsserver2003/sbs/techinfo/overview/licensingfa
q.mspx

Suggestion 2:
================
You can refer to the following article to deploy the branch office network
and replicate AD information and so on.

Branch office over the Internet
http://www.microsoft.com/technet/prodtechnol/windowsserver2003/library/Serve
rHelp/0160ff2e-806b-4780-9a14-e2192640cc6f.mspx

Windows Server 2003 Active Directory Branch Office Guide
http://www.microsoft.com/downloads/details.aspx?FamilyID=9353a4f6-a8a8-40bb-
9fa7-3a95c9540112&displaylang=en

A dial-up router-to-router VPN connection
http://www.microsoft.com/technet/prodtechnol/windowsserver2003/library/Serve
rHelp/e46ee6bf-f327-4437-a523-bafb35285f04.mspx

Persistent branch office
http://www.microsoft.com/technet/prodtechnol/windowsserver2003/library/Serve
rHelp/ca443764-c00d-4b5f-9c8f-04516d241438.mspx

Router-to-Router VPN
http://www.microsoft.com/resources/documentation/Windows/2000/server/reskit/
en-us/Default.asp?url=/resources/documentation/windows/2000/server/reskit/en
-us/intwork/inbe_vpn_ydqh.asp

Suggestion 3:
===============
You can install a Exchange 2003 server in the remote site and replicate
user information in the exchange server. Please note you need install the
exchange server in the same organization with the exchange on the SBS
server box.

Suggestion 4:
===============
For the laptop users, you can setup Distributed File System between two
servers in the both sites. Distributed File System (DFS) allows
administrators to group shared folders located on different servers and
present them to users as a virtual tree of folders known as a namespace. A
namespace provides numerous benefits, including increased availability of
data, load sharing, and simplified data migration. So it does make sense we
implement DFS between two stand-alone root domains. For more detail
information about DFS, you can refer to the following articles:

Distributed File System and File Replication Services
http://www.microsoft.com/windowsserver2003/technologies/storage/dfs/default.
mspx

DFS Technical Reference
http://www.microsoft.com/technet/prodtechnol/windowsserver2003/library/TechR
ef/20ffb860-f802-455c-9ca2-5194f79a9eb4.mspx

Distributed File System (DFS) - Best Practices and Troubleshooting Guide
http://www.microsoft.com/technet/prodtechnol/windows2000serv/support/dfsbp.m
spx

Hope above information helps! I am happy to be of assistance to you and
look forward to your reply.

Have a nice day!

Sincerely,

Jenny Wu
Microsoft CSS Online Newsgroup Support
Get Secure! - www.microsoft.com/security
======================================================
This newsgroup only focuses on SBS technical issues. If you have issues
regarding other Microsoft products, you'd better post in the corresponding
newsgroups so that they can be resolved in an efficient and timely manner.
You can locate the newsgroup here:
http://www.microsoft.com/communities/newsgroups/en-us/default.aspx

When opening a new thread via the web interface, we recommend you check the
"Notify me of replies" box to receive e-mail notifications when there are
any updates in your thread. When responding to posts via your newsreader,
please "Reply to Group" so that others may learn and benefit from your
issue.

Microsoft engineers can only focus on one issue per thread. Although we
provide other information for your reference, we recommend you post
different incidents in different threads to keep the thread clean. In doing
so, it will ensure your issues are resolved in a timely manner.

For urgent issues, you may want to contact Microsoft CSS directly. Please
check http://support.microsoft.com for regional support phone numbers.

Any input or comments in this thread are highly appreciated.
======================================================
This posting is provided "AS IS" with no warranties, and confers no rights.

--------------------
Thread-Topic: Adding a Remote Office Domain Controller
thread-index: AcZe/1hW1pcQpCvTRCCMXSWhLNw+7g==
X-WBNR-Posting-Host: 68.48.40.105
From: =?Utf-8?B?RGVzZXJ0VHJvbGw=?= <DesertTroll@xxxxxxxxxxxxxxxxxxxxxxxxx>
References: <usk8k4tXGHA.1204@xxxxxxxxxxxxxxxxxxxx>
Subject: RE: Adding a Remote Office Domain Controller
Date: Thu, 13 Apr 2006 06:37:01 -0700
Lines: 79
Message-ID: <BE3071C5-E47D-4E72-BE77-9CEE096EA99F@xxxxxxxxxxxxx>
MIME-Version: 1.0
Content-Type: text/plain;
charset="Utf-8"
Content-Transfer-Encoding: 7bit
X-Newsreader: Microsoft CDO for Windows 2000
Content-Class: urn:content-classes:message
Importance: normal
Priority: normal
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.3790.1830
Newsgroups: microsoft.public.windows.server.sbs
Path: TK2MSFTNGXA01.phx.gbl
Xref: TK2MSFTNGXA01.phx.gbl microsoft.public.windows.server.sbs:260161
NNTP-Posting-Host: TK2MSFTNGXA01.phx.gbl 10.40.2.250
X-Tomcat-NG: microsoft.public.windows.server.sbs

Hey Ben,

1 - Is the above allowed on SBS Licencing?
Yes

2 - Forgive me for my lack of knowlege on this: How will the workstaions
in
the remote office know to logon to the remote server rather than the SBS
2k3?
You need to create a separate Site in the Active Directory Sites and
Services tool for your remote network. When clients log in, they use a DNS
SRV record to query for a DC and the DNS service first tries to present a
DC
in the same site as the client IP.

3 - I assume we can add a differerent logon script for the remote server,
as
we map drives etc.
The login script should be creating using a Group Policy Object bound to
an
OU. It would be a good idea to create an OU for your remote site and
arrange
your resources there. Link a GPO specifically for Logon Script to the
Remote
OU.

4 - We have laptop users who will move between sites with their laptops
will
they have any problems?
No, DNS will direct them to the proper domain controller.

5 - All workstation users use roaming profiles, i assume in the profile
location we can use %logonserver%\<share name>\<profile> in their profile
location
The roaming profile will have to synchronized with the workstation over
the
slow link if the client is remote to the server storing the profile. I am
not
aware of a workaround this issue.

6 - Is it possible for us to buy an Exchange server license and add it to
the new remote server, or is this not allowed with SBS?
You can have another Exchange server for the remote site.

"Ben" wrote:

Hi

We are to open a small remote office.

We have a SBS 2k3 Premium at our main office, we were planning on using
terminal services to access the main site resources but due to unreliable
WAN connections this will not be possible.

Our plan is to add a Windows 2k3 Server on the remote office site as a DC
and get a ISA 2004 and SQL 2005 licence for the remote server.

ISA will manage the VPN and SQL Server 2005 will be a publishing
subscriber
of our replicated SQL Server 2000 database at our head office. We will
also
replicate all our files across to the remote server.

We plan that the remote office users will use Outlook in Cached Exchange
mode and will access exchange the main office server.

I have a few questions:

1 - Is the above allowed on SBS Licencing?
2 - Forgive me for my lack of knowlege on this: How will the workstaions
in
the remote office know to logon to the remote server rather than the SBS
2k3?
3 - I assume we can add a differerent logon script for the remote
server, as
we map drives etc
4 - We have laptop users who will move between sites with their laptops
will
they have any problems?
5 - All workstation users use roaming profiles, i assume in the profile
location we can use %logonserver%\<share name>\<profile> in their profile
location
6 - Is it possible for us to buy an Exchange server license and add it to
the new remote server, or is this not allowed with SBS?

Sorry for all the questions, I will be very apprecitive of your input.

Many thanks

B





.



Relevant Pages

  • RE: Remote Office Configuration Suggestions?
    ... The additional DC at the remote site, could not be the SBS server, as you ... Microsoft CSS Online Newsgroup Support ...
    (microsoft.public.windows.server.sbs)
  • Re: Unable to Connect to Server/Client Desktop using RWW
    ... Please post the results of an ipconfig /all for the sbs server. ... I did another test after turning off the firewall on the remote. ... If port 4125 was not forwarded on the sbs machine, ...
    (microsoft.public.backoffice.smallbiz)
  • RE: Cannot Connect via remote desktop
    ... please ensure the domain name vpn.XXX.co.uk resolve to the ... As you want to connect the SBS via VPN, I suggest you also perform the ... select Disable Routing and Remote ... You have to rerun the CEICW to make sure your SBS 2003 server have right ...
    (microsoft.public.windows.server.sbs)
  • Re: Remote Desktop Problem
    ... connectivity issues in SBS Server: ... This newsgroup only focuses on SBS technical issues. ... |> this computer on the Remote tab of properties of My Computer on SBS ...
    (microsoft.public.windows.server.sbs)
  • Re: Add a DC to remote site via VPN
    ... I believe the licensing is the same on ... one in California are PE 1900 servers. ... that for the SBS migration but because of the OEM licensing I can't do ... server and reinstall W2K3, join it into the domain and ship it to ...
    (microsoft.public.windows.server.sbs)