Hyper-V host on the domain when DC is its guest

I only have one license of Windows server 2012 R2, and I am running 1 DC and 1 file server at a remote location.
Do I want to put this host on the domain whose DC is its guest?

It is a very small environment, so I really don't need 2 DCs. I am wondering if I leave the host as is (workgroup), or put it on the domain.
Member_2_7970390Asked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Cliff GaliherCommented:
With 2012 and newer, both are options. I prefer joining to the domain as management is he really easier. But 2008 era folks still get nervous, so personal preference.
0
Lee W, MVPTechnology and Business Process AdvisorCommented:
Agree with Cliff.  I literally just got home from setting up a system and I joined it to the domain.  But there's not of a difference either way.
0
Philip ElderTechnical Architect - HA/Compute/StorageCommented:
Our preference for standalone Hyper-V settings is to leave the host in a workgroup.

While not foolproof, it offers a bit of a security barrier between the production network and the host which is vital to that network's functioning.

Our primary reason though is it just works.

Management is done via RSAT, RDP inbound rules on the firewall, or Intel RMM/iDRAC Enterprise/iLO Advanced.

EDIT: RSAT method requires some changes via John Howard's HVRemote setup. We don't use RSAT we just log on. :)
0
Ultimate Tool Kit for Technology Solution Provider

Broken down into practical pointers and step-by-step instructions, the IT Service Excellence Tool Kit delivers expert advice for technology solution providers. Get your free copy now.

Tarmo KabonenIT&Helpdesk ManagerCommented:
It is a bad choice to add Hyper-V host to domain if there is no second DC out of the host itself. There is no good way to get updates from GPO when guest (DC host)  is down “yet” when system is restarting. Yes, it can be updated manually, but it is not a good solution to do it. If You have one extra DC outside of this host, then it is OK. I would recommend not to join host to domain and leave it as workgroup.
Other issue is time drift in the domain if guest is only DC and host is domain member. You HAVE to leave synchronization of system time inside of Hyper-V guest settings unchecked, it keeps whole domain system time steady.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Member_2_7970390Author Commented:
Dear all,
Thank you for your comments. First it seemed that it would be easier to manage if I put the hyper-v on the domain, but there may be potential issues like kapsionu pointed out. So I decided to leave it without joining the domain.

Now I just have to go through how to manage the host from another 2012 R2 machine. It sounds a bit complicated, but it is just one-time thing.
0
Tarmo KabonenIT&Helpdesk ManagerCommented:
RDP and port forward is enough, RSAT is a little bit overkill if no vpn or dedicated connection between locations involved.
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Hyper-V

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.