Two Domains over WAN & Firewall


my setup shown below, single forest, root domain , child domain, few dc's @ remote location child domain.

all fsmo roles held @ main office.

root_domain.child_domaina-----------firewall-----------child_domaina ( few dc's)

what kind of services/ports need allow between these 2 locations respect root domain controllers? note: root dc's only.

when dc's child domaina @ remote location contact root domain?

what happen when there no wan connectivity between 2 locations?

what kind of services/ports need allow between these 2 locations respect root domain controllers? note: root dc's only.

for port details, visit below site.

http://social.technet.microsoft.com/wiki/contents/articles/584.active-directory-replication-over-firewalls-en-us.aspx

when dc's child domaina @ remote location contact root domain?

depends on dns when users parent domain login child domain machine or users child domain tries access resources in root domain. default, configuration, schema & application(if ad-integrated dns) partitions replicated between parent & child domain. if dns not been delegated root domain, users in child domain still relies on dns of parent domain name resolutions.

what happen when there no wan connectivity between 2 locations?

if users child domain or parent domain tries access shared resources in cross domain, not able neither authentication work again other domains. replication between 2 domain fail users able work fine own domain.

see inline comments.

awinish vishwakarma - mvp - directory services

my blog: awinish.wordpress.com

disclaimer posting provided as-is no warranties/guarantees , confers no rights.



Windows Server  >  Directory Services



Comments

Popular posts from this blog

CRL Revocation always failed

Failed to query the results of bpa xpath

0x300000d errors in Microsoft Remote Desktop client