Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Can I replicate Windows server 2008 Active Directory to my home dhcp computer AD ?

Posted on 2013-01-23
4
523 Views
Last Modified: 2013-01-31
Hi Experts,

One of me clients is asking if hes able to replicate Windows server 2008 Active Directory to the home dhcp computer AD.  (So the home server is like a DR for AD)

But the home is only a residential ADSL with no static ip.
Just small office. There is no firewall between the two sites.
It should not work ?

regards,
0
Comment
Question by:stephen2012
  • 2
4 Comments
 
LVL 16

Assisted Solution

by:Bruno PACI
Bruno PACI earned 334 total points
ID: 38812599
Hi,

I'm not sure to understand, or I'm afraid to understand... (!!)
Do you mean installing a second domain controller on a remote server that is connected to the first one through an ADSL connection (public WAN) !!??

Well... anyway... installing a DC on a server that has no static IP address wil not work a long time... You can make it work for a while but as soon the IP will change you might have hard time to make it work back again.

Let be serious. If you want a secondary Domain Controller so that the domain still works if one Domain Controller fails you must use a server that is really able to be a domain controller, with static IP, enough RAM, DNS service, etc...


If you're idea is to backup the AD server and export the backup to another computer through an ADSL connection, then yes this is possible but this is only a backup. If the AD server (let's call it the Domain Controller, DC, as it is its function) crashes, you'll have to resintall a Windows opearting system on it to restore the backup and get your DC back to life. it will take a few hours to make bring the domain back up.


Have a good day.
0
 
LVL 57

Assisted Solution

by:Mike Kline
Mike Kline earned 166 total points
ID: 38812731
Agree with Paci, I would not do it.   Are you currently running with one DC, at a minimum get a second DC up in the office (virtual or on any hardware).  If your single DC goes down hard you will have downtime and issues.

Have you thought about the Microsoft cloud solution

http://www.windowsazure.com/en-us/manage/services/networking/replica-domain-controller/

I have some machines in Azure but haven't installed a replica DC.

Thanks

Mike
0
 

Author Comment

by:stephen2012
ID: 38826846
how about if I use a Dynamic DNS service to allow AD to replicate over internet ?
0
 
LVL 16

Accepted Solution

by:
Bruno PACI earned 334 total points
ID: 38827094
No.

The AD controller must be recorded in the domain DNS zone, not on any external DNS zone.
By the way, AD domain controller require not only simple type "A" DNS records must alos a lot of "SRV" DNS records and that sort of DNS records are not provided by dynamic DNS services on the web.

Again, AD controller must have static IP addresses for a very simple reason :

To be able to replicate AD objects the domain controllers must be able to locate each other.
To locate each other the domain controllers use DNS records.
DNS records are replicated between domain controllers.
This can work if IP are static.

If the IP of a DC comes to change, the other DC won't be able to locate the DC anymore because its DNS records won't point to the new IP address.
The replication will then fail. And as the replication is the way to replicate DNS records you won't get out of this failing situation without an admin action.


Active Directory is like a plane: it's safe and robust but you must know how to pilot and must not try to make a looping.
I don't know how to be more clear... If you try exotic configuration you'll crash.

If you want a disaster recovery configuration you must do it seriously and spend the right money for that. In your case, a dedicated server as a secondary DC in your company will be perfect ! Trying to use a "strange" home server somewhere on the web is a fool idea !
0

Featured Post

Free Tool: Subnet Calculator

The subnet calculator helps you design networks by taking an IP address and network mask and returning information such as network, broadcast address, and host range.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
SOA*.tmp files 2 44
Need to script to pull out the report from Active directory 14 36
Replication problems 6 20
Run Windows Server from USB 2 13
Is your Office 365 signature not working the way you want it to? Are signature updates taking up too much of your time? Let's run through the most common problems that an IT administrator can encounter when dealing with Office 365 email signatures.
This script can help you clean up your user profile database by comparing profiles to Active Directory users in a particular OU, and removing the profiles that don't match.
This tutorial will walk an individual through configuring a drive on a Windows Server 2008 to perform shadow copies in order to quickly recover deleted files and folders. Click on Start and then select Computer to view the available drives on the se…
This tutorial will walk an individual through the steps necessary to install and configure the Windows Server Backup Utility. Directly connect an external storage device such as a USB drive, or CD\DVD burner: If the device is a USB drive, ensure i…

839 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question