question

JanusBarinan-8508 avatar image
0 Votes"
JanusBarinan-8508 asked FanFan-MSFT commented

Where does a machine go for domain joining?

I have 3 sites.
2 AD each.

In the newly installed machine in site 2 I put the dns on the nic to point to the AD/DNS in site 1. When it is joined to the domain it will communicate to site 1 right for domain joining or to Site 2 AD/DNS where it belongs?

Do I need a firewall definition towards all DC or just to specific DC to where where the newserver belongs to (Site2) or depend on its nic dns settings?

windows-server
· 2
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.


Hi,


Just want to confirm the current situations.
If there's anything you'd like to know, don't hesitate to ask.

Best Regards,

0 Votes 0 ·

Hi,
I am checking to see if the problem has been resolved.
If there's anything you'd like to know, don't hesitate to ask.
Best Regards,

0 Votes 0 ·
DSPatrick avatar image
0 Votes"
DSPatrick answered

The dc locator should sort this out for the member.
https://social.technet.microsoft.com/wiki/contents/articles/24457.how-domain-controllers-are-located-in-windows.aspx

--please don't forget to upvote and Accept as answer if the reply is helpful--



5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

FanFan-MSFT avatar image
0 Votes"
FanFan-MSFT answered

Hi,
The 'communicate' you mentioned above may be a little difficult to understand.

If it refers to network traffic, the client will communicate with both sites.
Because there will be DNS QUERY communication between the client and site1, and there will be authentication communication with the DC of it's local site.

AD uses subnets to determine which site the client computer belongs to, and that determines which domain controller(s) can be used for the client to log on.
So, it is not determined by the DNS server the client using.

In a multi-site environment, domain members should be configured to use the DNS servers at their local site before those at a different site. This minimizes the amount of DNS traffic crossing slower WAN links.


Best Regards,


5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

DSPatrick avatar image
0 Votes"
DSPatrick answered

Just checking if there's any progress or updates?

--please don't forget to upvote and Accept as answer if the reply is helpful--



5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.