Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 528
  • Last Modified:

Domain Replication - exclude a domain

Hi Experts and Happy New Year,

Im setting up a new domain and need some help. the current setup is as follows.

One Forest with a Root Domain called Limassol

A Child domain of Limassol called Port

A Tree Domain called Netanya. See attached pic.

Obviously Port and the Limassol domain need to comunicate with each other for the child/parent relationship to work. But I do not want Netanya and Port to have any communication. On the Netanya DC there are many event error messages that the DC in Netanya can not replicate to the DC in Port, this is correct as there is no VPN in place between the sites but I want the DC in Netanya not to try and replicate to the DC in Port.
There is a VPN in place between the Netanya doman and Limassol and replication is works fine.

Thanks
Capture.JPG
0
Rio_10
Asked:
Rio_10
  • 3
2 Solutions
 
ChrisCommented:
you are going against default MS architecture trying to disable any interaction between the domains.

You can probably force it by change the site links in sites and services and remove links between the DC's in those domains.

Changing this could cause issues and other errors to crop up.
0
 
Rio_10Author Commented:
The only way around it would be to have a VPN between all the sites which I do not want.
0
 
ChrisCommented:
no i think if you remove the direct replication partners the child domain would replicate up the root domain would replicate across and down
0
 
Darius GhassemCommented:
You need to create your physical replication topology that fits your replication needs. You don't have to have all site replicating with each other but you do need to have the replication links setup properly so, this will work properly.

http://technet.microsoft.com/en-us/library/cc755994(v=ws.10).aspx

http://technet.microsoft.com/en-us/library/cc759160(v=ws.10).aspx

http://technet.microsoft.com/en-us/library/cc961783.aspx
0
 
ChrisCommented:
yeap as i said you can remove links from some domains but leave the basic requiremetns of replication in place for the other ones

i.e.

 Server1.Port replicates to Server1.Limassol and Server2.Limassol
Server 2.Port replicates to Server1.Limassol and Server2.Limassol

Server1.Limassol replicates to Server1.Port and Server2.Port and Server1.Netanya and Server2.Netanya
Server2.Limassol replicates to Server1.Port and Server2.Port and Server1.Netanya and Server2.Netanya


this should be ok but may cause issues as the domains like to communicate
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

  • 3
Tackle projects and never again get stuck behind a technical roadblock.
Join Now