Can we delete the manually created site connections and run "repadmin /kcc" from the RODC's and automatically generate new site connections to one of our newer DC's in the "VPN", even though the RODC's are in a separate site?
ASKER
ASKER
ASKER
ASKER
ASKER
ASKER
ASKER
ASKER
ASKER
ASKER
Active Directory (AD) is a Microsoft brand for identity-related capabilities. In the on-premises world, Windows Server AD provides a set of identity capabilities and services, and is hugely popular (88% of Fortune 1000 and 95% of enterprises use AD). This topic includes all things Active Directory including DNS, Group Policy, DFS, troubleshooting, ADFS, and all other topics under the Microsoft AD and identity umbrella.
TRUSTED BY
And promoting them will also put them clearly back into the domain again.
You just have to make sure, that - if a firewall is between them - all needed ports are open.
If there are reasons not to used the automatically created connections, you can create them manually.
It is just not recomended, as the automatic repairment mechanism doesn't work for manually configured connections.