We have a single Windows 2003 AD domain with computers located at seven physcial locations connected as a WAN by point-to-point T1 lines.
My FSMO server is also a GC and DNS, and is located at the data center, and in addition at each physical location including the data center we have one AD server that is also set up as a GC and DNS.
All these computers and servers are on a single domain and in one AD Site.
My questions are:
1) Is it necessary to have all our (backup) AD/DNS servers be set up as GCs and if not why not? If we do keep it this way, are there any issues?
2) If we don't have all these servers set up as GCs, when someone from a remote location logs on to the domain, will they be authenticated only by the GC at the primary location?
3) We have Exchange 2k running with AD on that server. This is not set up as a GC. Should I enable GC on this as well? Could you please provide a reason as to yes or no?
4) Should I set up multiple AD Sites for these different physical locations? Please provide a reason.
Thank you very much.