Go Back   TechArena Community > Software > Windows Software
Become a Member!
Forgot your username/password?
Tags Active Topics RSS Search Mark Forums Read

Sponsored Links



Adding 2008 DC to a firewalled Child Domain

Windows Software


Reply
 
Thread Tools Search this Thread
  #1  
Old 14-04-2011
Member
 
Join Date: Apr 2011
Posts: 3
Adding 2008 DC to a firewalled Child Domain
  

Okay.. So we have all the firewall ports open for AD/DNS and replication thats is fine... however... we cant route to all the subnets that the child domain DC's are on.. I think thats where we are failing. We moved the FSMO roles to the DC on the segment that we can reach, but when looking at the netmon the DC we're promoting is trying to reach the DC's on the network that we cant route.

So i'll explain..
Promoting DC IP : 1.x.x.x

Firewall is open to these DC's in the root/child domains and communication is fine :
2.x.x.x (Has FSMO)
3.x.x.x
4.x.x.x
5.x.x.x

Now when we try to promote the DC on the other network t tries to reach un-routable networks :
6.x.x.x
7.x.x.x

My question how do i make sure that the DC i'm promoting only looks at the 2/3/4/5 DC's and ignores the others?

Reply With Quote
  #2  
Old 15-04-2011
Member
 
Join Date: Apr 2011
Posts: 3
Re: Adding 2008 DC to a firewalled Child Domain

is this in the correct forum area?
Reply With Quote
  #3  
Old 15-04-2011
Member
 
Join Date: Oct 2004
Posts: 1,342
Re: Adding 2008 DC to a firewalled Child Domain

In order to create a child domain on your network, you will need another server, or rather a Domain Controller. You can build that DC in your main office and then ship it out to the new office. This DC will also be a Global Catalog as well as DNS Server to assist all the clients in the new office with any DNS requests, etc. You also need to prepare your current network for the new sub domain.
Reply With Quote
  #4  
Old 15-04-2011
Member
 
Join Date: Apr 2011
Posts: 3
Re: Adding 2008 DC to a firewalled Child Domain

The new DC is going to be a member of an existing child domain... But on the other side of the firewall that network cant see all the domain controllers on ourside.

so two networks..

Network A has 10 DC's... in a child domain

Network B (where we want to build an additional DC) can only see a 7 of the 10 DC's on Network A and the DCPROMO is failing with an RPC error.

I want to make sure that the DC doesnt even try to commuinicate to the three DC's it cant see. but only the FSMO role holders in that domain.
Reply With Quote
Reply

  TechArena Community > Software > Windows Software
Tags: , , , ,



Thread Tools Search this Thread
Search this Thread:

Advanced Search


Similar Threads for: "Adding 2008 DC to a firewalled Child Domain"
Thread Thread Starter Forum Replies Last Post
Adding a 2008R2 Child Domain to a 2003R2 forest Kaysel Active Directory 2 01-05-2010 09:33 PM
Remove child domain after child domain DC has failed DANIEL 602 Active Directory 1 26-03-2010 03:13 AM
Adding a 64bit Server 2008 to existing Windows 2003 domain Zaz Windows Server Help 2 10-11-2008 07:38 PM
domain upgrade to 2008 by adding new 2008 server manishdk Active Directory 3 30-07-2008 10:15 PM
Child domain user does not show parent domain group membership Pratim Active Directory 1 19-06-2008 01:58 AM


All times are GMT +5.5. The time now is 12:03 AM.