Shares Inaccessible Once WAN Link down
Hi Buddies,We implemented One Windows Server 2008 Root Domain Controller and 9 Rodc Server across india for one of our customer. We have also configured Password Cachine on to the RODC Server for thier respective Regional Users. But WAN Link is down between Root Domain Controller & RODC Server. Users are unable to access their shares in their respective locations. These rodc server also have an own dns and global cataloge also.I Would like to appreciate to get any help from anyone.Thanks Kamal
June 29th, 2009 9:35am
hi there,
how do you want us to troubleshoot the issue. Does your site rely on only the WAN link ? , if so i do not think there is any other alternative to reach the servers except that you have to have fail over link to communicate between your servers.sainath
!analyze
Free Windows Admin Tool Kit Click here and download it now
June 29th, 2009 10:26am
Hello Kamal,How are the shares configured. If the shares are located in the main domain controller or on a server where users need the WAN to connect to it, then yes, if WAN is down, users will not be able to connect to the shares. Are these shares in the local site where the RODC are located? or on the remote site?Isaac Oben MCITP:EA, MCSE
June 29th, 2009 10:29am
Hello Kamal, By default RODC does not store account credentials except for tis own computer account and special krbtgt account for RODC. The shares which users are trying to access needs the authentication since your writable dc are not reachable you are getting error. Pleaseexplicitly allow the other users to be cached on the RODC and check the behavious.http://technet.microsoft.com/en-us/library/cc754956(WS.10).aspx.Thankshttp://technetfaqs.wordpress.com
Free Windows Admin Tool Kit Click here and download it now
June 29th, 2009 10:33am
Hi Sainat,I would like to update the shares and printers are their own local where RODC for their regional location are deployed.Thanks
June 29th, 2009 11:11am
Hi Syed,We have already added the remote locations users into Password Replication group and their computers accouts as well.But we have not addred KRBTGT account in anwhere is it required
Free Windows Admin Tool Kit Click here and download it now
June 29th, 2009 12:08pm
Hi Kamal, If you have tried the following steps: "Open Active Directory Users and Computers, click Domain Controllers, right-click the RODC account object, click Properties, and then click the Password Replication Policy tab. Click Advanced, and then click Prepopulate Passwords." Its also suggested to check your Site settings. Authentication depends on Site information. If all DC and RODCs are in same site, user may not choose the closest RODC for authentication. For your reference: RODC Authenticate users for my localy office http://social.technet.microsoft.com/forums/en-US/winserverDS/thread/42d62972-1b9f-4d41-89b2-da606e400503 Thanks. This posting is provided "AS IS" with no warranties, and confers no rights.
July 1st, 2009 9:38am


