Solved

One forest, two child domains, three subnets

Posted on 2014-01-12
4
369 Views
Last Modified: 2014-01-23
I need some serious help.....

I have been charged with setting up two separate domains that will share resources and reside on the same forest yet have thier own subnets.  Is this possible?

I have setup a 2008 forest.  I am trying to set up one of the 2008 child domains but of course during dcpromo, the new dc doesn't see the forest because it is on a different subnet.

I can ping the forest server.  All subnets have been created on the router and all can access the internet.

What am I doing wrong or missing?  Anyone?  Pleeeeeease......
0
Comment
Question by:carolinasgirl28
  • 2
4 Comments
 
LVL 6

Expert Comment

by:Sasa Kranjac
Comment Utility
You have network connectivity between the servers - the routing is working. Did you run ping using netbios, FQDN or IP address?
Is DNS working? Have you tried nslookup and checked if the name resolution works as it should?
The steps are:
1. verified and working connectivity (addressing, routers, gateways)
2. verified and working name resolution (names, FQDNs, name servers, services, DNS records...)
3. only when 1. and 2. are working flawlessly proceed setting up Active Directory

Please double check steps 1. and 2.

Can you post the error you get when dcpromo fails?
0
 

Author Comment

by:carolinasgirl28
Comment Utility
I am in the process of putting everything back (painstakingly) so that everyone can funcion Monday morning. I will have to try this again next weekend.

All servers are connected via fibre.
Could ping servers via ip address

The error I got from dcpromo was that the forest could not be contacted.  I'm assuming because the server was on another subnet?
0
 
LVL 6

Expert Comment

by:Sasa Kranjac
Comment Utility
I suspect that it might be a name resolution issue (DNS) because you have connectivity and DC still could not be contacted.
0
 
LVL 6

Accepted Solution

by:
Brad Held earned 500 total points
Comment Utility
So on the new server, its dns must only point to DC's in the parent domain.

So if ServerB is the child DC then it's dns must point to ServerA in the Parent.

Once its promoted and child domain is created, then some conditional forwarders need to be in place or the DNS forward lookup zones need to be replicated forest wide. This will allow clients to locate those resources in the other domain(s).
0

Featured Post

Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

Join & Write a Comment

Suggested Solutions

Transparency shows that a company is the kind of business that it wants people to think it is.
Join Greg Farro and Ethan Banks from Packet Pushers (http://packetpushers.net/podcast/podcasts/pq-show-93-smart-network-monitoring-paessler-sponsored/) and Greg Ross from Paessler (https://www.paessler.com/prtg) for a discussion about smart network …
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

771 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now