AD GPO over the internet?


hey guys, told re-post thread here. can see original here before continuing: http://social.technet.microsoft.com/forums/en-us/winservergp/thread/853019bb-5e6d-4ad6-9e9e-85dfa19b50cf/

---

i have 2 locations (we'll location 1 , location 2). location 1, main location, being installed ad server on server 2008 r2. need run gpos ad server @ location onto client computers @ location 2. location 2 not have branch office server @ all. right now, not connected ad server.

is possible, using internet, connect systems ad using internet, more can distribute gpos server @ location 1 computers @ location 2 without branch office server?

we not have routers provide vpn support, can static routes. way use vpn each client @ location 2 connect server @ location 1 on vpn (which option us, if can find out how that).


owner, quilnet solutions

so, client's perspective, there no knowledge @ branch office.  in subnet.  subnet located anywhere..in same building or accross world. 

your clients locate dc services using srv records located in active directory dns zone.

when user attempts logon, workstation query dns looking closest dc.  important when have more 1 dc...you want make sure configuration set correctly in ad sites , services...so clients can locate correct dc accordingly physical layout have created using logical objects (sites, subnets,etc... in ad sites , services).

one thing mention also.... highly recommended have @ least 2 dcs.  ensures ad highly available , fault tolerant...even if both dcs located @ main office.

the internet connection, vpn, etc.. not of importance clients.  network connectivity , ability resolve ip(s) of servers hosting ad services.

 


anitkb visit anitkb.com, knowledge base.
facebook follow me on facebook.


Windows Server  >  Platform Networking



Comments

Popular posts from this blog

server manager error: ADAM.events.xml could not be enumerated.

Cannot access Anywhere Access using domain name?

WMI Failure: Unable to update Local Resource Group