RE: Branch Office



Hello Lee,

Thank you for posting here, and thanks for Jim's inputs.

According to your description, I understand that you want to move some
internal clients to remote side, and there is a hardware VPN between the
main office and the branch office. You want to know what change you have to
do. If I have misunderstood the problem, please don't hesitate to let me
know.

Based on my research, we indeed to set the remote side clients in different
IP subnets. The VPN will work like a route between 2 offices. On the 2
sides of the router, we need different IP subnets. Since your main office
IP subnet is 192.168.X.X, I suggest you use 10.10.X.X on the branch office.

On the branch office we can setup a DHCP server to assign 10.10.X.X IP to
remote client computers.

I agree with you, we'd better setup a additional DC on the branch office,
it will improve branch office clients network performance. If you do not
want to setup another server, we have to set the branch office clients' DNS
and WINS pointing to SBS 2000. You can use DHCP option of these settings
for all branch office clients.

The branch office clients' default gateway should pointing to VPN gateway.

Additional, if you want to let the branch office clients to access main
office clients, I suggest you make the SBS 2000 working under single NIC.
This will improve the network performance. The VPN can control all traffic
between 2 offices.

I hope the information will give you some help.

Thanks and have a nice day!

Best regards,

Terence Liu(MSFT)

Microsoft CSS Online Newsgroup Support

Get Secure! - www.microsoft.com/security

=====================================================
This newsgroup only focuses on SBS technical issues. If you have issues
regarding other Microsoft products, you'd better post in the corresponding
newsgroups so that they can be resolved in an efficient and timely manner.
You can locate the newsgroup here:
http://www.microsoft.com/communities/newsgroups/en-us/default.aspx

When opening a new thread via the web interface, we recommend you check the
"Notify me of replies" box to receive e-mail notifications when there are
any updates in your thread. When responding to posts via your newsreader,
please "Reply to Group" so that others may learn and benefit from your
issue.

Microsoft engineers can only focus on one issue per thread. Although we
provide other information for your reference, we recommend you post
different incidents in different threads to keep the thread clean. In doing
so, it will ensure your issues are resolved in a timely manner.

For urgent issues, you may want to contact Microsoft CSS directly. Please
check http://support.microsoft.com for regional support phone numbers.

Any input or comments in this thread are highly appreciated.
=====================================================

This posting is provided "AS IS" with no warranties, and confers no rights.

--------------------
| Thread-Topic: Branch Office
| thread-index: AcfqzzGPI8zL+mA6SueU3FzqhjhQhQ==
| X-WBNR-Posting-Host: 207.46.19.168
| From: =?Utf-8?B?TGVlIEpvaG5zb24=?= <LeeJohnson@xxxxxxxxxxxxxxxxxxxxxxxxx>
| Subject: Branch Office
| Date: Wed, 29 Aug 2007 23:30:01 -0700
| Lines: 28
| Message-ID: <DED34700-E497-49DF-A1D1-3370DAAE5531@xxxxxxxxxxxxx>
| MIME-Version: 1.0
| Content-Type: text/plain;
| charset="Utf-8"
| Content-Transfer-Encoding: 7bit
| X-Newsreader: Microsoft CDO for Windows 2000
| Content-Class: urn:content-classes:message
| Importance: normal
| Priority: normal
| X-MimeOLE: Produced By Microsoft MimeOLE V6.00.3790.2826
| Newsgroups: microsoft.public.windows.server.sbs
| Path: TK2MSFTNGHUB02.phx.gbl
| Xref: TK2MSFTNGHUB02.phx.gbl microsoft.public.windows.server.sbs:59662
| NNTP-Posting-Host: tk2msftsbfm01.phx.gbl 10.40.244.148
| X-Tomcat-NG: microsoft.public.windows.server.sbs
|
| My client currently has about 40 PCs on an SBS 2000 (w/ISA) network. They
are
| going to move half of the PCs to a remote location. There will be a
hardware
| VPN between the two sites.
|
| After reading numerous post, it seems that the PCs that get moved to the
| remote site will need to have a different IP range. The current IP
settings
| are:
|
| External NIC 192.168.50.1
|
| Internal NIC 192.168.1.100
|
| Everything is currently DHCP from the SBS. I am assuming that at the
remote
| site I will need to either add a router to provide DHCP or set everything
| static. What settings do I need to change on each of these workstations
to
| continue to use the domain server at the HQ site?
|
| Trust me, I KNOW that they need a domain controller at the remote site.
It's
| just not an option that will be considered at this time. The SBS 2000
server
| is also a terminal server in application sharing mode. Any work done by
the
| remote site will be using the TS.
|
| Any and all help will be greatly appreciated.
|
| Thanks,
|
| Lee Johnson
| Louisville, Kentucky
|

.



Relevant Pages

  • Re: Another additional DC question
    ... Appearently there is a Domain controller at this branch office with a different domain name, I think its possible to connect the two forests together and share the resources with a cross forest trust in place, correct? ... Since we have the Point to Point in place with Layer 3 switches on each end, I figured rather than having Clients use VPN, why not have them log on to the domain that Site A hosts. ... If all the remote users are doing is authenticating to the DC at the main office they could share the T1 with the phones - it'll consume very little bandwidth. ...
    (microsoft.public.cert.exam.mcse)
  • Re: SBS 2003 and Replication Errors with Remote DC
    ... branch office DC running Windows 2003 Standard. ... The remote site is using 192.168.1.* and the SBS is running the ... The problem I'm having now is that it doesn't appear that replication ...
    (microsoft.public.windows.server.sbs)
  • Re: SBS 2003 and Replication Errors with Remote DC
    ... branch office DC running Windows 2003 Standard. ... The remote site is using 192.168.1.* and the SBS is running the ... The problem I'm having now is that it doesn't appear that replication ...
    (microsoft.public.windows.server.sbs)
  • Re: software access from site office
    ... The deployment of the remote office is much dependent on the Authentication ... efforts if you deploy an additional domain controller in the branch office. ... Windows Server 2003 Active Directory Branch Office Guide ... Microsoft Online Partner Support ...
    (microsoft.public.windows.server.migration)
  • Re: software access from site office
    ... The deployment of the remote office is much dependent on the Authentication ... efforts if you deploy an additional domain controller in the branch office. ... Windows Server 2003 Active Directory Branch Office Guide ... Microsoft Online Partner Support ...
    (microsoft.public.windows.server.migration)

Loading