As the child domain was a must for security reasons, I went for option 2 with a slight modification. Since the child domain is a small domain and there were very few changes made to it, I just forced replication without removing lingering objects. The reason for this was that I wasn't sure if anything was added to the child domain (new users, etc), but only one user had been deleted that still showed in the parent domain. Forcing replication may have added that user back, but ensured I kept any changes that were made to the child domain that the parent domain wasn't aware of. I'm not entirely sure that is how it works, but didn't want to take a chance. All is working now. Thanks.
Main Topics
Browse All Topics





by: abhvpPosted on 2009-05-06 at 08:02:33ID: 24315610
I think you are right, 2nd options suits you. But my point is if you do not need Child DCs then go for option 1. This is upto you how do you want to get this done.