bbmservis
asked on
moving away from .local domain
Hi all,
we are now in process configuring from scratch our AD , small company 20 employes, 1DC Srv 2012 r2.
Previously it was .local domain configured and after some research and planing it is decited to go for our buyed TLD. Lets say domain.com
ISP is going to host zone, and 2012 r2 server is going to be secondary DNS.
Plan is to put computers into active directory , but with prefix hq : hq.domain.com
While testing in lab i've found that creating new forest "domain.com" and after that creating subdomain "hq.domain.com" made me stuck. Could not join computers into active directory "hq.domain.com"
If i twist installation and create new forest "hq.domain.com" i will be able to join computers into "hq.domain.com", create new domain in DNS "domain.com" which is going to be replica from one hosted at ISP.
What is correct way to achieve goal?
Many thx to all!
we are now in process configuring from scratch our AD , small company 20 employes, 1DC Srv 2012 r2.
Previously it was .local domain configured and after some research and planing it is decited to go for our buyed TLD. Lets say domain.com
ISP is going to host zone, and 2012 r2 server is going to be secondary DNS.
Plan is to put computers into active directory , but with prefix hq : hq.domain.com
While testing in lab i've found that creating new forest "domain.com" and after that creating subdomain "hq.domain.com" made me stuck. Could not join computers into active directory "hq.domain.com"
If i twist installation and create new forest "hq.domain.com" i will be able to join computers into "hq.domain.com", create new domain in DNS "domain.com" which is going to be replica from one hosted at ISP.
What is correct way to achieve goal?
Many thx to all!
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Great tip for wildcrd certicate, txh.
Now Exchange makes me worry - if i setup hq.domain.com and install Exchange 2013/16 into active directory email addresses of user are going to be user@hq.domain.com instead user@domain.com. Any tip for that?
Now Exchange makes me worry - if i setup hq.domain.com and install Exchange 2013/16 into active directory email addresses of user are going to be user@hq.domain.com instead user@domain.com. Any tip for that?
I'm sorry I didn't see your last comment. You can set the email address to whatever you want in Exchange, it doesn't have to match your AD domain name. You can change user's UPN (login) to match the email domain pretty easily by adding an additional UPN suffix to Active Directory then changing it on the user objects in ADUC.
- Open AD Domains and Trusts
- Right Click AD Domains and Trusts in the left pane and select properties
- enter the UPN suffix you want to add (same as your email domain), click Add, OK
- Go to AD Users and Computers and Select all your user objects, RC, Properties
- Account Tab, Check UPN Suffix
- Change the drop-down to match the suffix you just added in AD Domains and Trusts.
ASKER
thx
we are going to host mail server (exchange) at premise, domain.com its going to be. For access it from LAN plan is to make pinpoint DNS record.
And if we buy wildcard SSL certificate *.domain.com i presume that we are good for Outlook clients at LAN location? Correct!?