Solved

Preferred Logon Server

Posted on 2003-11-21
7
1,258 Views
Last Modified: 2010-04-13
I'm actually using Server 2003 but this is still related to Server 2000. As background, I used to have this issue when I worked at a large company with six sites across the country running NT 4.0. Sometime, wokstations would choose a domain controller at a remote site as logon servers and this would casue very very slow logins. It was supposed to mean the local controllers were too busy but that wasn't the case. Anyway, we usedthe setprfdc.exe and lmhost file to solve this.

Question:  I work at a small company with two sites connected via a T1. I just setup two controllers at the primary site and a one secondary at the remote location. Anyway, very few people are using these new servers so traffic is low, but when I logged on my login script ran very slowly from the remote site. Can I set the preferred DC's in a policy or what should I do? The local dc were not busy so I'm not sure why it went remotely for logon. I really never want that to happen. if both our DC at the primary site are unavailable we are having major issues that the remote site login would not solve.

I hoped this was solved with AD ?

 
0
Comment
Question by:bwalan
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
7 Comments
 

Expert Comment

by:Joe_C
ID: 9800276
I had the same issue... remote domain controllers servicing local logon requests.  The issue was resolved after I properly configured my sites and services.

How do you have your sites and services configured?

Do you have each physical office setup as a site?
Do you have a site link between the two sites?
Do you have the proper subnets assigned to the proper sites?
0
 
LVL 6

Expert Comment

by:simpsonehh
ID: 9800969
have the domain controllers authenticate with each other. locally have clients authenticate to a local dc.  meaning have a dc at the office.  when you authenticate where does your computer info come from? the remote site?

Joe_C has a good method, if possible, give a brief descriptions of how to.
thanks
0
 
LVL 6

Expert Comment

by:Casca1
ID: 9801514
Have you set a DC at each site as a GC? Once the rest of the posts are followed, setting the local server as a GC is the final step. In fact, having a GC at each site should prevent this from happening, but we all know about Microsofts belief in the "Perfect Network World" 8-)
0
Enterprise Mobility and BYOD For Dummies

Like “For Dummies” books, you can read this in whatever order you choose and learn about mobility and BYOD; and how to put a competitive mobile infrastructure in place. Developed for SMBs and large enterprises alike, you will find helpful use cases, planning, and implementation.

 

Expert Comment

by:Joe_C
ID: 9807907
Yes... each physical office should have it's own GC to ensure that local traffic requiring the use of a GC (like logons) does not traverse the WAN.  Not only should you have a DC/GC at each site but, you need to make sure you assign the proper subnet to that site.    
0
 

Author Comment

by:bwalan
ID: 9814195
Both site have GC servers. I thought configured the sites correclty. Can somone briefly summarize what to do. Assume:

1. Primary site  10.0.0.0
2. 2nd Site       10.10.10.0

Also, what tool can I see this type of issue in. Replmon.exe shows replication occuring as expected.

Thanks
0
 
LVL 6

Expert Comment

by:Casca1
ID: 9814343
Sites and Services. You must set the site up there for each IP subnet.
0
 

Accepted Solution

by:
Joe_C earned 100 total points
ID: 9817743
1) Open AD Sites and Services

2)  Right click on the subnets container and select "new subnet"

3) Enter 10.10.10.0 and then assign it to the second site (if already created then just verify it's assigned to proper site)

Each site must have:

Licensing Site Settings
NTDS Site Settings
One Server

On a side note:  It's very important to ensure that the time at both sites is synchronized - see KB article 285923

Also see article 223346 regarding your FSMO placement and optimazation

When this was happening to me every time I opened AD Users & Computers Snap-In on my laptop it would default to a DC/GC that was not local to my site.  After I proplerly configured my sites and services the snap-in began using the local servers.
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
XP pro; manually run services in registry? 15 28
kerberos errors 7 556
Migrate Windows NT to Windows 2003 2 523
Install Window 2012 Domain on 9 137
NTFS file system has been developed by Microsoft that is widely used by Windows NT operating system and its advanced versions. It is the mostly used over FAT file system as it provides superior features like reliability, security, storage, efficienc…
In Part II of this series, I will discuss how to identify all open instances of Excel and enumerate the workbooks, spreadsheets, and named ranges within each of those instances.
With Secure Portal Encryption, the recipient is sent a link to their email address directing them to the email laundry delivery page. From there, the recipient will be required to enter a user name and password to enter the page. Once the recipient …
Finds all prime numbers in a range requested and places them in a public primes() array. I've demostrated a template size of 30 (2 * 3 * 5) but larger templates can be built such 210  (2 * 3 * 5 * 7) or 2310  (2 * 3 * 5 * 7 * 11). The larger templa…

749 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question