Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium


Two Domains on One domain Controller

Posted on 2009-04-16
Medium Priority
Last Modified: 2012-05-06
add a second domain to an existing domain...have two domains on ONE DC. so the DC can act as a primary DC and a secondary DC for backup of another DC in another location. Windows 2003 ENT sp2
Question by:richardjones1025
  • 2
LVL 10

Expert Comment

ID: 24158187
I would use Virtual Server for this - although it will place a resource strain on the Server itself (unless it's a good spec)
LVL 10

Expert Comment

ID: 24158197
As an addendum: http://www.microsoft.com/windowsserversystem/virtualserver/ it's a free download, but you will need to buy another Windows Server licence.

Accepted Solution

RightNL earned 500 total points
ID: 24158261
I'm gathering you mean a sub-domain..
any how. it's not possible on the same server .. you could virtualize the servers on 1 hardware device but you cannot make a machine domaincontroller for 2 different domains in active directory.
I would of course also be a mayor security breach as a domain controller "owns" the domain and thus the server and so this would mean that an administrator for either domain could corrupt the ad very easily..
a sub domain is build for security reasons mostly (an other good reason would be replication but even that can be fixed without a subdomain.)  and therefore it would be wrong do even try doing it if it were possible.

Author Closing Comment

ID: 31571008

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Wouldn't it be nice if objects in Active Directory automatically moved into the correct Organizational Units? This is what AutoAD aims to do and as a plus, it automatically creates Sites, Subnets, and Organizational Units.
Sometimes it necessary to set special permissions on user objects.  For instance when using a Blackberry server, the SendAs permission needs to be set. I see many admins struggle with the setting that permission only to see it disappear within a few…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

578 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question