QuestionQ52

Deploy and manage AD DS

Your network includes an Active Directory Domain Services (AD DS) forest. The forest contains three Active Directory sites named Site1, Site2, and Site3. Each site contains two domain controllers. The sites are connected by using DEFAULTIPSITELINK.

You open a new branch office that contains only client computers.

You need to make sure that the client computers in the new office are primarily authenticated by the domain controllers in Site1.

Solution: Create a new subnet object and associate it with Site1.

Does this achieve the goal?

Explanation

Active Directory subnet objects map client IP addresses to sites. When the branch-office subnet is associated with Site1, DC Locator identifies those clients as belonging to Site1 and prefers domain controllers in that site for authentication. Site1 contains domain controllers, so this configuration establishes the required authentication preference.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!