Solved

What software do you have on your Windows 2012 R2 Domain Controllers

Posted on 2014-10-22
5
173 Views
Last Modified: 2016-10-27
HI All,
I wanted to ask everyone what software do they install as best practice on their DC's. I am building a new 2012 R2 Forest and wanted to see what others have installed on their DC's. Any suggestions and input is appreciated. Some items I can think of include Windows 2012 support tools, Resource Kit, bginfo, vnc???).
0
Comment
Question by:tigran_p
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
5 Comments
 
LVL 58

Expert Comment

by:Cliff Galiher
ID: 40398532
None of the above. I install a monitoring and configuration agent (such as SCOM, SCCM, Kasey) and that's it. I keep DCs sacrosanct.
0
 
LVL 27

Accepted Solution

by:
Dan McFadden earned 500 total points
ID: 40398689
I agree with Cliff.  Install as little as operationally necessary.

Typical for me:
- DPM client (backup)
- SCOM agent (monitoring)
- SCCM agent (updating)
- an AdminTools directory with portable troubleshooting tools (no install required).  eg: sysinternal suite, treesize free, dnslint, AL Tools, a few custom PS scripts, etc.

Period!

Absolutely no need to install 3rd party remote connection services, like VNC.  Use RDP.

You can install the resource kit, RSAT, 2012 support tools, etc... on your workstation.  No need to pollute your DC.

Dan
0
 
LVL 1

Expert Comment

by:Kamran Mallik
ID: 40398796
I agree, DCs should not have any third party apps as best practise. We would install Kaseya agent but that is only because I work for a managed services IT firm supporting third party clients.
0
 
LVL 9

Expert Comment

by:Zacharia Kurian
ID: 40399789
Do not install any other applications on your DC. But you can have some monitoring tools or management tools in your client PC or in a member server. I am using Manage Engine Audit Plus pro, manage engine service desk pro and Specops Gpupdate Pro.

When you choose any Antivirus, better to have Sophos but make sure to read the antivirus exclusion list on microsoft site

http://support.microsoft.com/kb/822158.

When it comes to backup use both windows backup and any other 3rd party backup tools like Symantec system recovery or Acronis. They do have better success rate when you restore to a dis similar hard ware. But to be on the safe side, do have an additional domain controller in your network.
0
 
LVL 34

Expert Comment

by:Seth Simmons
ID: 40399791
the only thing i've ever had running on my domain controllers is nsclient++ for nagios monitoring and sysinternals tools if needed
i keep domain controllers (particularly virtual machines) very lean
build other servers for other applications (exchange, wsus, etc.)
0

Featured Post

Enterprise Mobility and BYOD For Dummies

Like “For Dummies” books, you can read this in whatever order you choose and learn about mobility and BYOD; and how to put a competitive mobile infrastructure in place. Developed for SMBs and large enterprises alike, you will find helpful use cases, planning, and implementation.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

We have come a long way with backup and data protection — from backing up to floppies, external drives, CDs, Blu-ray, flash drives, SSD drives, and now to the cloud.
Three simple tips to quickly and efficiently back up and protect the contents of your PC and Mac®.
In this Micro Tutorial viewers will learn how to use Boot Corrector from Paragon Rescue Kit Free to identify and fix the boot problems of Windows 7/8/2012R2 etc. As an example is used Windows 2012R2 which lost its active partition flag (often happen…
This tutorial will walk an individual through the process of installing of Data Protection Manager on a server running Windows Server 2012 R2, including the prerequisites. Microsoft .Net 3.5 is required. To install this feature, go to Server Manager…

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question