AD Queries

What is the recommended size (no. of users) for a site to install local AD server
What is the functions of AD server
What is the pros in having local AD server installed
What is the cons in having local AD server installed
What is the recovery process in event of AD server hard disk crash, etc.
If AD server is down, what is the failover/backup arrangement
sureshkumaritAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Cliff GaliherCommented:
EE is a great resource for help when you get stuck, but it cannot and should not replace IT training, books, and traditional learning. I encourage you to buy and read this book to answer your questions on active directory:

https://www.microsoft.com/learning/en-us/book.aspx?id=13349
0
sureshkumaritAuthor Commented:
Can you give some basic idea, where I can start as I need some guidence
0
Cliff GaliherCommented:
You asked some incredibly broad questions, so the book I linked to really is a good place to start.
0
LearnctxEngineerCommented:
Yes very broad questions. You're basically after for an entire infrastructure design so no one can give you a complete answer though if you need a consultant I'm sure there are plenty who could be available for hire :)

Read the following free bits of info and look at books if you want easier reading as Cliff suggested.

http://technet.microsoft.com/en-us/library/dd448614.aspx
http://technet.microsoft.com/en-us/library/cc770946%28v=ws.10%29.aspx

I can give some basic answers below to get you on your way but really you need to read, read, read :)

What is the recommended size (no. of users) for a site to install local AD server
You have to take many things into consideration.

Network topology. Network bandwidth between sites. Redundant/backup links or single point of failure? How many users will there be? Will your domain controllers be used just domain controllers or will they be running other services? The list goes on. Microsoft have guide lines available around this. Refer to TechNet but there is no right answer and your specific situation will vary to someone else.

What is the functions of AD server?
I'm going to assume you're talking about Domain Controllers (DC's) specifically (putting aside other stuff like CA's, ADFS, etc). They provide authentication services (logon, etc), identity (users, groups, printers, computers, etc), access (ACL's) and management (GPO's) and more. Domain controllers host the AD databases and replicate changes between each other. Simple answer, if you want to know more you will need to start reading some TechNet articles or books.

What is the pros in having local AD server installed.
Faster local access to AD services. Less traffic going across links. Redundancy. This will depend on your specific situation though. If you have high speed redundant links from a site to a hub site you might not want to put a domain controller there.

What is the cons in having local AD server installed
Depends on the link at the site but really cost, making sure that the server is physically secure and patching can be a problem if the server is on a slow link as well. This will all depend on your specific situation.

What is the recovery process in event of AD server hard disk crash, etc.
Turn the box off if its on. Perform a metadata cleanup to remove the server from AD (though I'm always told in 2008 R2/2012 AD is smart enough to do this itself if you delete the DC object from AD...I still prefer a metadata cleanup). Warranty the drives. Rebuild the server and promote as a DC again.

If AD server is down, what is the failover/backup arrangement
AD handles this itself. KCC (knowledge consistency checker -- read about AD replication, topology and bridgeheads if you don't know) will fix up replication. Clients will hit the next closest domain controller available if there is not another DC in that site.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Active Directory

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.