Solved

How many Domain Controllers do i Need?

Posted on 2011-03-14
11
1,419 Views
Last Modified: 2012-05-11
I have a network of about 1200 computers. I have two Win 2003 R2 domain controllers running AD, DNS, DHCP and DFS for the redirected start menu folders (low load on DFS)

1. HP DL380 G4, Single Xeon 3.2Ghz, 2GB RAM, Mirrored drive
2. Dell Poweredge 1450, Single Xeon 2.8GHz, 4.5GB RAM

Both are a global catalog
We don't currently use exchange

This is a college environment with 6 lessons changes per day, so at least 6 log ons and log offs per computer. We also have a print system, and intranet which is linked into AD for authentication.

This is a single site environment.

How many DCs should I have? Is 2 sufficient?

Thanks.
0
Comment
Question by:gmbaxter
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 2
  • 2
  • +3
11 Comments
 
LVL 11

Expert Comment

by:RickSheikh
ID: 35132779
Yes.
0
 
LVL 11

Expert Comment

by:RickSheikh
ID: 35132783
You should minimally have two.
0
 
LVL 74

Expert Comment

by:Glen Knight
ID: 35132793
Yes it is, where it becomes more evident is if you have lots of policies and they are being applied at logon, but single site 2 DC's should be enough.

Personlly, I would want another one in there too ;) but mainly so I can take one down without effecting perfromance too much.
0
Manage your data center from practically anywhere

The KN8164V features HD resolution of 1920 x 1200, FIPS 140-2 with level 1 security standards and virtual media transmissions at twice the speed. Built for reliability, the KN series provides local console and remote over IP access, ensuring 24/7 availability to all servers.

 
LVL 34

Accepted Solution

by:
Paul MacDonald earned 125 total points
ID: 35132812
You only need one.  Two is much better due to the redundancy.  Depending on how your computers are distributed, you might want additional DCs at remote sites, but presuming your network is essentially flat and all the computers are on the same campus, you can probably get away with just the two.
0
 
LVL 11

Expert Comment

by:RickSheikh
ID: 35132826
However I would like to upgrade the DCs to Windows Server 2008 R2 to take advantage of additional features : http://technet.microsoft.com/en-au/library/dd378796%28WS.10%29.aspx
0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 35132908
How big is your ntds.dit?  Just wondering because you will see a good perf gain if you have enough memory to cache ntds.dit.  
I also agree about taking advantage of 2008 R2

There was a similar question at the TechNet forums too http://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/0af01850-eccb-488a-9c53-7bda784e96b6

On another note a few weeks ago at the MVP summit we did ask the AD team to update AD Sizer...I don't think that is on the top of their priority list :)

Thanks

Mike
0
 
LVL 13

Expert Comment

by:kdearing
ID: 35133708
Agree with dmazter, I would prefer a third.
Another benefit is that you could go through your upgrade process one server at a time without interrupting production time.
0
 
LVL 11

Author Comment

by:gmbaxter
ID: 35217416
Thanks for the comments. I think i'll deploy a third DC as a virtual guest.

How should I distribute the fsmo roles between the 3 servers?

Also domain functional level is currently 2000 should I upgrade this?
0
 
LVL 11

Assisted Solution

by:RickSheikh
RickSheikh earned 125 total points
ID: 35217553
PDCe and RID Master should be on the same box, and preferrably on a physical box. The rest can be distributed as you see fit. As its a single domain forest, and if all DCs will be GCs then Infrastructure Master and should be insignificant.
0
 
LVL 34

Expert Comment

by:Paul MacDonald
ID: 35218070
If the servers are 2003, there's no reason no to elevate the schema to 2003 as well.

Make all the DCs GC servers.  PDC Emluator and RID Master should co-exist.  The rest of the roles you can spread around as you like.
0
 
LVL 11

Author Closing Comment

by:gmbaxter
ID: 35236734
Thanks for the replies
0

Featured Post

Announcing the Most Valuable Experts of 2016

MVEs are more concerned with the satisfaction of those they help than with the considerable points they can earn. They are the types of people you feel privileged to call colleagues. Join us in honoring this amazing group of Experts.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
Always backup Domain, SYSVOL etc.using processes according to Microsoft Best Practices. This is meant as a disaster recovery process for small environments that did not implement backup processes and did not run a secondary domain controller that ne…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

756 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question