[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now


Active Directory authentication timeout?

Posted on 2011-10-27
Medium Priority
Last Modified: 2012-05-12
Hi. We have an issue with migrating email boxes for some of our remote users in China office.

We are migrating with quest tool in the UK but the China users are failing with get-mailbox failures etc.

The China users are in their own child domain and all the DCs for this domain are all in China.

Whenever we do anything on the China domain from the UK the responses are very slow, e.g. just navigating through the domain in AD User & Computer is very slow.

I think the Quest tool is timing out and that a possible solution would be to have a DC for the China domain in our UK office. However, I need to prove that this is the case!

Is there any way of proving that the authentication is timing out?

Question by:paulo999
  • 2
LVL 39

Accepted Solution

Krzysztof Pytko earned 2000 total points
ID: 37037057
I've never tried this tool but from problem reading it might be related with WAN link saturation and its lag. Especially when you migrate mailboxes which have some size :)

I would suggest to place also additional DC for that domain in your site to be sure that authentication is resolved quickly and check then if it works correctly.


Author Comment

ID: 37130217
That's what I was thinking too. The WAN link to China is actually a VPN over the internet so it's very laggy

I have added a new DC and will try some more migrations and report back.

Thanks for the input.
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 37130231
You're welcome :)


Featured Post

Nothing ever in the clear!

This technical paper will help you implement VMware’s VM encryption as well as implement Veeam encryption which together will achieve the nothing ever in the clear goal. If a bad guy steals VMs, backups or traffic they get nothing.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Group policies can be applied selectively to specific devices with the help of groups. Utilising this, it is possible to phase-in group policies, over a period of time, by randomly adding non-members user or computers at a set interval, to a group f…
Resolving an irritating Remote Desktop connection that stops your saved credentials from being used.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…
Suggested Courses

873 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question