Werbung: SecurityConsole.de verwaltet Ihre Computer mit Security Essentails aus der Cloud!
30 Tage kostenfrei testen und 20% Rabatt für Ihre Bestellung mit Promocode: WBF2685582
(Promocode gültig bis 31.12.2011)

Group:  English: Windows Server » microsoft.public.windows.server.dns
Thread: Force clients to only logon to DCs in their site

HTVi
TV Discussion Newsgroups

Force clients to only logon to DCs in their site
mattbndr 10/31/2008 12:08:01 AM
I have two sites. one in Melbourne (about 60 users) and one in Perth (about
10 users). Site Melbourne has two DCs. Site Perth has one DC.

However I have discovered that some Melbourne PCs are using the DC in Perth
to logon and some PCs in Perth are using the Melbourne DC to logon.

Is there a way I can force PCs to only ever use DCs in their site to logon?

I have done some research and looked at some GPO solutions but they stop the
AD kerberos service from being registered in DNS all together. Where as I
want all of these DCs to be used for logons, but only for their site.


Thanks
Re: Force clients to only logon to DCs in their site
Meinolf Weber <meiweb(nospam)[ at ]gmx.de> 10/31/2008 6:36:53 AM
Hello mattbndr,

You have to configure in AD sites and services the subnets and also 2 sites
and add the subnet to the site. Then move the DC to there belonging site.
Also use AD integrated DNS zones if not done and make both DC's DNS server,
then configure the clients to use there site DNS as prepferred and the other
one as secondary DNS on the NIC.

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm


[Quoted Text]
> I have two sites. one in Melbourne (about 60 users) and one in Perth
> (about 10 users). Site Melbourne has two DCs. Site Perth has one DC.
>
> However I have discovered that some Melbourne PCs are using the DC in
> Perth to logon and some PCs in Perth are using the Melbourne DC to
> logon.
>
> Is there a way I can force PCs to only ever use DCs in their site to
> logon?
>
> I have done some research and looked at some GPO solutions but they
> stop the AD kerberos service from being registered in DNS all
> together. Where as I want all of these DCs to be used for logons, but
> only for their site.
>
> Thanks
>

Home | Search | Terms | Imprint Contact
Newsgroups Reader - provided by WiredBox.Net
Suche nach Orten, Städten, Postleitzahlen, Vorwahlen, Kfz-Kennzeichen