Hello - I'm looking for a little advice on setting up remote domain controllers. Most of my business clients either have one location or use a terminal server for remote users. I have one business that is opening two additional locations (20+ users at each location) and I want to make sure my plan is sound since I've never done this before.
I'm going to have a site to site VPN between all three locations. Each branch location will have a small 2008R2 server. The main location will have the their app\database server and a terminal server. I'll join everything to the main domain and setup a common shared drive, login scripts, Active Directory replication, etc.
My main questions relate to DHCP, DNS, authentication, etc. Each network will be on a different subnet. I assume computers on the local subnet will point to the local server for DNS and DHCP, correct? Do I add forwarders on the local DNS servers to the DNS server at the main location or just leave the forwarders pointed to the ISP DNS server?
If I make each server a global catalog server will the local computers automatically seek the local server for authentication? How do they know that is the correct one?
Anything else I need to be aware of or plan for in your experience?
Thanks for your time!
-Adam
I'm going to have a site to site VPN between all three locations. Each branch location will have a small 2008R2 server. The main location will have the their app\database server and a terminal server. I'll join everything to the main domain and setup a common shared drive, login scripts, Active Directory replication, etc.
My main questions relate to DHCP, DNS, authentication, etc. Each network will be on a different subnet. I assume computers on the local subnet will point to the local server for DNS and DHCP, correct? Do I add forwarders on the local DNS servers to the DNS server at the main location or just leave the forwarders pointed to the ISP DNS server?
If I make each server a global catalog server will the local computers automatically seek the local server for authentication? How do they know that is the correct one?
Anything else I need to be aware of or plan for in your experience?
Thanks for your time!
-Adam