aresblade22
asked on
ad replication and nat
Hi
can active directory replication work if there is NAT between two sites?
thanks
can active directory replication work if there is NAT between two sites?
thanks
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
You got some reading ahead of you, that is for sure.. hope you are up for it.. :)
And once you configure your trust relationships, certainly, they will work through the routers also.
This article pretty much covers all your questions..
http://www.microsoft.com/technet/prodtechnol/windows2000serv/technologies/activedirectory/deploy/confeat/adrepfir.mspx
And once you configure your trust relationships, certainly, they will work through the routers also.
This article pretty much covers all your questions..
http://www.microsoft.com/technet/prodtechnol/windows2000serv/technologies/activedirectory/deploy/confeat/adrepfir.mspx
ASKER
Ok but this mean that the only way to replicate two domain controllers with nat in the middle is to use ipsec?
is the only way?
are there some improvements with 2003?
Thanks
is the only way?
are there some improvements with 2003?
Thanks
No, but if you do not use IPSEC, then you must open your firewalls to RPC traffic, and I would never suggest that.
I believe that W2K and 2K3 use all the same technologies for replication...
I believe that W2K and 2K3 use all the same technologies for replication...
ASKER
they always talk of nat with ipsec but i need a document with only nat and ad,
i have:
ad server 1- 10.1.1.1------------------ ---------- ---10.1.1. 2 nat 192.168.2.1--------------- ---------- ----ad server 2- 192.168.2.2
no vpn or ipsec only nat between two private networks, does this work? some documents on this?
thanks
i have:
ad server 1- 10.1.1.1------------------
no vpn or ipsec only nat between two private networks, does this work? some documents on this?
thanks
Refund the points.. never did get a chance to get back on this one... sorry...
ASKER
some special indications? some documents on this?
what about trust between two forest? does it work with nat?
how to configure?
thanks