Improve company productivity with a Business Account.Sign Up

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 524
  • Last Modified:

AD and replication

We have 1 main site with vpn connections to our other sites, but they don't all have vpn tunnels to each other. I added an AD server in several of the sites.  The latest one I added showed up under sites & services, but it automatically generated a replication to a server/site that it does not have a direct tunnel to. Is it okay to delete that automatically generated object under NTDS settings in AD sites and Services?
I see there are replication errors to it.
0
jtano
Asked:
jtano
  • 5
  • 3
  • 3
2 Solutions
 
Mike KlineCommented:
In sites and services do you have bridge all site links checked or unchecked?   Great thread about BASL here.  I was going to to explain it but my friends id a good job there

http://social.technet.microsoft.com/Forums/windowsserver/en-US/70104b15-2e6f-428e-9361-ddc1eb816b12/hub-and-spoke-topology-with-sites-and-services?forum=winserverDS

Thanks

Mike
0
 
jtanoAuthor Commented:
Bridge all site links is UNCHECKED.   So I need go under IP and where the defaultsITELINk is change that to take out the new AD or create a new site link and have only the new AD on the link with the main AD? Does that sound correct?
0
 
Mike KlineCommented:
Does the new site and AD have a physical connection.  Can they talk to each others?  If so a site link from remote site to HQ is common.   How do you have your sites setup right now?

Tanks

Mike
0
What Kind of Coding Program is Right for You?

There are many ways to learn to code these days. From coding bootcamps like Flatiron School to online courses to totally free beginner resources. The best way to learn to code depends on many factors, but the most important one is you. See what course is best for you.

 
jtanoAuthor Commented:
They have a vpn connection, not physical. They can talk to each other. Its one of the Other remote sites that it automatically built a connection to under NTDS settings.
The other sites all have a vpn connectio to each other. This one only has a connection to the main site, not to this remote site its trying to replicate to.
0
 
Mike KlineCommented:
Is there a site link between the site and the remote site it is trying to replicate to?

Thanks

Mike
0
 
MaheshArchitectCommented:
Since this is Hub and spoke topology, do not remove bridge all site links checkbox.
In that case you need to create site link bridge between hub site and every vpn site.

Instead go to AD sites and services, go to IP site links and create new site links (representing each vpn site) and keep only two sites as member sites for each site link, one main site and one respective vpn site.

Then delete unnecessary connection objects from each site. You may create manual connection objects for time being.
This will prevent creation of unnecessary connection objects in all sites.

Mahesh
0
 
jtanoAuthor Commented:
Sorry now I'm getting confused. . First under IP properties "Bridge all site links" is NOT CHECKED.
1. Are you recommending to check that?
I have under AD sites and services my 5 sites:
CB- main site
RR - remote
SH- remote
SUM-remote
VN-remote
Under Inter-site
        IP  I have Defaultsiteiplink - Sites in this link CB with SH and VN
       then there are 2 more site links created 1 called RR with CB and RR
       then a 3rd link SUM with CB and SUM in the site link.
I"m assuming this is where i have to add the new remote link called SH?

Also under the site called SH the new remote AD server SH1has under NTDS settings 2 automatically generated  connections 1 to a AD server in CB ( main) and 1 to an AD server in VN (remote)  My original question was can I delete the VN generated connection since there is no vpn connection between them.
I would like to do what is recommended so if that means putting the check mark back for"bridge all site links" then please let me know.  Thank you
0
 
MaheshArchitectCommented:
Yes, you can select bridge all site links which is the default setting when you originally deploy active directory.
Just remove SH from Default IP site link and then create new site link and add CB and SH there as member sites.
Then rename Default IP site link to CB-VN

As a result you will have total 4 IP site links including Default IP site Link,
In all site links CB is common site and one VPN site in each site link

You can remove all \ unwanted connection objects any time without any problem.
Later on again when you right click NTDS settings and click on Check Replication Topology, new automatic connections will be automatically generated based on your site link member sites.
Else AD will generate them over the time automatically

Mahesh
0
 
jtanoAuthor Commented:
I wasn't sure if I should make a new question, but I wanted to attach it to this one:
Mahesh,
Everything worked well except I have 2 AD servers in the CB site. main and bkup.
SH ( new ad server) automatically generated a connection to bkup but bkup did not generate one back.  Main however did. So there seems to be errors saying main can't replicat to SH but SH is trying to replicate to Bkup. Can I just change the connectio to match up?
0
 
MaheshArchitectCommented:
If you want you can create manual connections and check if replication is running properly

If replication is working properly, your manual created connections also should replicate properly

After creating manual connection give some time to active directory and also right click NTDS settings and click check replication topology

Then try to replicate manually, it should work

Mahesh
0
 
jtanoAuthor Commented:
OK... Thanks for your help!!
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Creating Active Directory Users from a Text File

If your organization has a need to mass-create AD user accounts, watch this video to see how its done without the need for scripting or other unnecessary complexities.

  • 5
  • 3
  • 3
Tackle projects and never again get stuck behind a technical roadblock.
Join Now