ADDING A CHILD TO THE FOREST ROOT
Hi all, i am setting up a virtual lab on my hyper-v host.
I have created two internal virtual networks and configured RRAS on the hyper-v host to route between the virtual networks. All pings and seems to work nicely.
i have created a DC in one virtual network but i now want to create another DC in the other virtual network but on a child domain of the first forest root domain.
Do i need to do anything with sites and services or domains and trusts to get this to work?
I tried to create the child domain last night but i got a dns error when i tried to join the child domain to the forest root domain.
I didnt spend much time troubleshooting to be honest and im on my break at work so i thought i would try and get a heads up on it for tonight when i try again.
Thanks
May 22nd, 2012 11:02am
i have created a DC in one virtual network but i now want to create another DC in the other virtual network but on a child domain of the first forest root domain.
Do i need to do anything with sites and services or domains and trusts to get this to work?
No, there is no required configuration on domains and services or domains and trusts snap-in. You should just make sure that DNS resolution is made correctly and that needed ports are opened: http://social.technet.microsoft.com/wiki/contents/articles/584.active-directory-replication-over-firewalls.aspx
For DNS resolution, make the new server points to the old one as primary DNS server and validate that it can resolve DNS records using
nslookup.
Once done, run dcpromo to create a new child domain. The trust relationship will be created automatically.
This
posting is provided "AS IS" with no warranties or guarantees , and confers no rights.
Microsoft
Student Partner 2010 / 2011
Microsoft
Certified Professional
Microsoft
Certified Systems Administrator: Security
Microsoft
Certified Systems Engineer: Security
Microsoft
Certified Technology Specialist: Windows Server 2008 Active Directory, Configuration
Microsoft
Certified Technology Specialist: Windows Server 2008 Network Infrastructure, Configuration
Microsoft
Certified Technology Specialist: Windows Server 2008 Applications Infrastructure, Configuration
Microsoft
Certified Technology Specialist: Windows 7, Configuring
Microsoft
Certified Technology Specialist: Designing and Providing Volume Licensing Solutions to Large Organizations
Microsoft Certified IT Professional: Enterprise Administrator
Microsoft Certified IT Professional: Server Administrator
Microsoft Certified Trainer
Free Windows Admin Tool Kit Click here and download it now
May 22nd, 2012 1:35pm
i have created a DC in one virtual network but i now want to create another DC in the other virtual network but on a child domain of the first forest root domain.
Do i need to do anything with sites and services or domains and trusts to get this to work?
No, there is no required configuration on domains and services or domains and trusts snap-in. You should just make sure that DNS resolution is made correctly and that needed ports are opened: http://social.technet.microsoft.com/wiki/contents/articles/584.active-directory-replication-over-firewalls.aspx
For DNS resolution, make the new server points to the old one as primary DNS server and validate that it can resolve DNS records using
nslookup.
This
posting is provided "AS IS" with no warranties or guarantees , and confers no rights.
Microsoft
Student Partner 2010 / 2011
Microsoft
Certified Professional
Microsoft
Certified Systems Administrator: Security
Microsoft
Certified Systems Engineer: Security
Microsoft
Certified Technology Specialist: Windows Server 2008 Active Directory, Configuration
Microsoft
Certified Technology Specialist: Windows Server 2008 Network Infrastructure, Configuration
Microsoft
Certified Technology Specialist: Windows Server 2008 Applications Infrastructure, Configuration
Microsoft
Certified Technology Specialist: Windows 7, Configuring
Microsoft
Certified Technology Specialist: Designing and Providing Volume Licensing Solutions to Large Organizations
Microsoft Certified IT Professional: Enterprise Administrator
Microsoft Certified IT Professional: Server Administrator
Microsoft Certified Trainer
Once done, run dcpromo to create a new child domain. The trust relationship will be created automatically.
This
posting is provided "AS IS" with no warranties or guarantees , and confers no rights.
Microsoft
Student Partner 2010 / 2011
Microsoft
Certified Professional
Microsoft
Certified Systems Administrator: Security
Microsoft
Certified Systems Engineer: Security
Microsoft
Certified Technology Specialist: Windows Server 2008 Active Directory, Configuration
Microsoft
Certified Technology Specialist: Windows Server 2008 Network Infrastructure, Configuration
Microsoft
Certified Technology Specialist: Windows Server 2008 Applications Infrastructure, Configuration
Microsoft
Certified Technology Specialist: Windows 7, Configuring
Microsoft
Certified Technology Specialist: Designing and Providing Volume Licensing Solutions to Large Organizations
Microsoft Certified IT Professional: Enterprise Administrator
Microsoft Certified IT Professional: Server Administrator
Microsoft Certified Trainer
May 22nd, 2012 1:43pm
Hi hyperNoddy,
Thanks for posting here.
Yes, we dont have to set site or subnet, just make sure the DC of child domain is using the parent domain DC as the preferred DNS server or we can replicate the current AD integrated DNS zone to the new child DC so that it can set to use itself as
the preferred one.
Please also make sure the connectivity between two virtual networks is OK (routing in RRAS).
Checklist: Creating a new child domain
http://technet.microsoft.com/en-us/library/cc779539(WS.10).aspx
Thanks.
Tiger LiTiger Li
TechNet Community Support
Free Windows Admin Tool Kit Click here and download it now
May 23rd, 2012 4:07am
Hi hyperNoddy,
Thanks for posting here.
Yes, we dont have to set site or subnet, just make sure the DC of child domain is using the parent domain DC as the preferred DNS server or we can replicate the current AD integrated DNS zone to the new child DC so that it can set to use itself as
the preferred one.
Please also make sure the connectivity between two virtual networks is OK (routing in RRAS).
Checklist: Creating a new child domain
http://technet.microsoft.com/en-us/library/cc779539(WS.10).aspx
Thanks.
Tiger LiTiger Li
TechNet Community Support
May 23rd, 2012 4:15am