Solved

CAN I ADD ACTIVE DIRECTORY SERVICES ON OTHER END OF VPN CONNECTION

Posted on 2014-11-28
5
159 Views
Last Modified: 2014-11-28
My development network is 192.168.100.x located at home.   I have a persistent VPN connection back to the office on 192.168.1.x subnet.     I am wanting to configure a development server at home with Active Directory Services and want to make sure it will not effect the office domain in any way.

Home AD server will be 2012 R2.   Office is 2008 R2
0
Comment
Question by:Lance McGrew
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
5 Comments
 
LVL 94

Expert Comment

by:John Hurst
ID: 40471171
It should work. So long as the development server is on a different domain, and the AD services are different, it should not be any problem. I have a persistent site to site link to several clients and can manage their servers this way.
0
 

Author Comment

by:Lance McGrew
ID: 40471182
John, do you also have a domain with ADS running at your local site or are you just connected to multiple domains through the site to site link with your machine set as a workgroup computer?

Seems like as long as I create a new forest with totally different domain name and different subnet, that would keep me isolated.    

What concerns me is,  my home laptop is joined to the office.local domain.   I suppose the logical move would be to remove the laptop and join the newly configured home.local domain once created?   All other systems here at home are on a simple workgroup.
0
 
LVL 94

Accepted Solution

by:
John Hurst earned 500 total points
ID: 40471184
I do not have a domain in home office but domains at the other ends.

Seems like as long as I create a new forest with totally different domain name and different subnet, that would keep me isolated.

Yes, and you are on a different subnet to boot (need to be for VPN).

I suppose the logical move would be to remove the laptop and join the newly configured home.local domain once created?

I think so. I serve multiple clients so my home office machines are not on any domain.  I think your laptop on domain A on your home subnet might get confused with server domain B on the same subnet locally. I would remove it from the original remote (to you) domain.
0
 

Author Closing Comment

by:Lance McGrew
ID: 40471186
Thanks John
0
 
LVL 94

Expert Comment

by:John Hurst
ID: 40471189
Lance - you are very welcome and I was happy to help.
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article explains the steps required to use the default Photos screensaver to display branding/corporate images
This article demonstrates probably the easiest way to configure domain-wide tier isolation within Active Directory. If you do not know tier isolation read https://technet.microsoft.com/en-us/windows-server-docs/security/securing-privileged-access/s…
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…

696 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question