Questions tagged [domain-controller]

A domain controller is a server in a Microsoft Active Directory or NT4 domain that is responsible for central authentication.

In Microsoft Active Directory and NT4 domains, a domain controller is the central repository for all of the user account authorization information. It allows a person to sign on once and be allowed access to many different resources.

1589 questions
3
votes
1 answer

Restoring read only domain controller from VM checkpoint

I have several RODC on remote sites, and sometimes power failures corrupts ADDS database which takes some time to recover. I'd like to move RODC to virtual machine (on same server) to be able in case of failure just rollback to previous checkpoint.…
3
votes
3 answers

How can I prevent the compromise of a Domain Controller on ESX stored in a unsecured location?

A client of ours has a DC that will be located in an insecure location. RODCs and separate domains/forests are not permitted by management. All the servers will be located on a VMWare ESX server. I'm interested in VMWare, Windows, AD configurations…
3
votes
3 answers

Windows Server 2012 Migration (DNS/AD DS Standard Eval to Essentials OEM) P2V -> Do I need a Secondary Domain Controller during migration?

This is my first post on this exchange (although not my first on stack exchange), so please have patience. I am a 3rd year student intern, and I have been tasked with virtualizing the server systems at the company I work for. I have come a long…
3
votes
5 answers

Active Directory - List ISP DNS servers as Forwarders?

Background: I have a relatively small Active Directory domain (Windows 2003 Functional level) with two domain controllers, both running DNS servers. They are the primary and secondary DNS servers for the LAN. No other local DNS. I do not have…
3
votes
1 answer

How can I prevent a second network interface from updating DNS with its IP address?

Recently I added a second network interface to my Domain Controller, and assigned a private subnet to provide a iSCSI volume for backups, but the IP address from this interface is being propagated to my DNS server. So now, when I use nslookup…
3
votes
3 answers

Setting up a domain controller in an Azure Virtual Network, how should I configure the DNS Server List?

I've set up a simple Azure Virtual Network (VN) consisting of a single domain controller and a few clients. Now I need to know how to configure the VN's DNS Server List. Here are the two options I've tried: Make the DC the only IP in the list of…
Mike
  • 1,271
  • 5
  • 18
  • 31
3
votes
1 answer

Synchronizing RODCs to NTP servers?

I've read this nice article from Gareth Hooper regarding Domain Controller syncing to external time sources. In essence, he wrote that although Microsoft don't actually condone the practice, it's a good idea to pre-configure all DCs (especially the…
pepoluan
  • 5,038
  • 4
  • 47
  • 72
3
votes
4 answers

Hyper-V 2012 Cluster with only one DC

What happens with a Hyper-V 2012 Cluster with only one DC, if the DC suddenly goes down? Would the Hyper-V Cluster works after a reboot, if the DC is missing? Or should we have two DCs?
3
votes
1 answer

How to remove broken DC from 2003 domain (with complications)

I have never been to heavily involved with managing AD2003 domain controllers. Now I get a broken domain dumped in my lap. I need some advice how to proceed. Here is the story: Earlier today I inherited an old, badly managed, 3 server domain from…
Tonny
  • 6,332
  • 1
  • 18
  • 31
3
votes
1 answer

When one DC crashes, TFS 2012 stops working

We have two Windows 2008 domain controllers. We installed the second DC only a few months ago. We also have a TFS 2012 server on the network. Today, when the older DC crashed, TFS stopped working completely. Local users received messages such as…
3
votes
1 answer

samba4 dc "network location cannot be reached"

to clear the air centos 6.4? (maybe 6.3) as the server, running samba 4.0.10, trying to add a windows 7 client that has connectivity to the server. this is what windows shouts as me as it mocks my dependence on network infrastructure. "the network…
3
votes
1 answer

prevent domain controller using wpad for windows update

We have a 2012 domain controller in an environment where we are running a web proxy auto discovery (WPAD) setup for client devices, and that proxy server requires authentication. However windows update does not support proxy servers requiring…
BeowulfNode42
  • 2,615
  • 2
  • 19
  • 32
3
votes
1 answer

Blocking File and Printer Sharing on Windows domain controller

I have a Windows 2012 R2 domain controller that doesn't need any Filter and Printer sharing ports open, so in an attempt to harden the server I've tried disabling the rules in the "File and Printer Sharing" group. However, every time I reboot, the…
3
votes
1 answer

Is it at all possible to turn this Domain Controller into a PDC?

BACKGROUND: 1) Some time ago, a colleague did a clean install of Windows Server 2008 R2, promoted it to Domain Controller from an old Windows Server 2003, and life seemed to be good. In the meantime, a bunch of software was installed the on…
3
votes
12 answers

should other functions be allowed on the active directory server

It used to be recommended that the Domain servers house no other functionality. The CEO and outside IT firms keep bringing up that they would like to use these servers for additional functions - like FTP/Mail/etc. Has security improved to make such…
mson
  • 496
  • 1
  • 8
  • 16