High Availability in Active Directory and Internet.

Posted on 2014-09-02
Last Modified: 2014-11-09
Good afternoon I need to support the following:
I have 2 sites, each site has installed a RODC and Internet Backup

1) how I should configure the servers so that when the link is cut (1 or ShutDown ShutDown) can still have control of my active directory and users can connect to the network for 802.1x
2) how I should configure DNS so you can surf the internet for backup

waiting for your comments

best regards
Question by:rikardoperu
    LVL 21

    Expert Comment

    You would use failover at your firewall to support multiple internet connections.  SonicWALLs do a very good job at this and are easy to configure.  If your firewall does not support failover you can use a regular load balancer.  I've used this one in the past and it will even fail over DNS records so inbound connections aren't broken.

    Make sure you point the primary DNS of the clients to the DNS server (ADC/RODC) located at that site.

    Author Comment

    my firewall handle this type of connection, the problem that I have is how I configure my clients and DNS servers when communication with my backup link is cut,
    LVL 21

    Accepted Solution

    You should fail over at the WAN side of the firewall and set your clients to always use the DNS server that is located on their LAN.  This would be your active directory controller or one of your RODCs.

    When the failover happens the clients will continue to query the local server just like they always have and the firewall will take care of any internet traffic that needs routing to the active link.

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    How to run any project with ease

    Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
    - Combine task lists, docs, spreadsheets, and chat in one
    - View and edit from mobile/offline
    - Cut down on emails

    Nslookup is a command line driven utility supplied as part of most Windows operating systems that can reveal information related to domain names and the Internet Protocol (IP) addresses associated with them. In simple terms, it is a tool that can …
    Enterprise networks where VoIP phones have been deployed frequently use port configurations that allow both a computer and an IP phone to be plugged into the same switch port but use different VLANs. On Cisco equipment I'm referring to the "native V…
    Internet Business Fax to Email Made Easy - With eFax Corporate (, you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
    Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

    737 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    18 Experts available now in Live!

    Get 1:1 Help Now