建立一個網站連結設計Creating a Site Link Design

適用於:Windows Server 2016、Windows Server 2012 R2、Windows Server 2012Applies To: Windows Server 2016, Windows Server 2012 R2, Windows Server 2012

建立的網站連結設計連接瀏覽網站的網站連結。Create a site link design to connect your sites with site links. 網站連結反映間連接及傳送複寫流量方法。Site links reflect the intersite connectivity and method used to transfer replication traffic. 使網域控制站在每個網站可以複寫 Active Directory 變更,您必須連接網站的網站連結。You must connect sites with site links so that domain controllers at each site can replicate Active Directory changes.

網站連結,連接的網站,找出您想要的網站連結、建立的網站連結物件各自台間傳輸容器,然後命名為網站連結成員網站。To connect sites with site links, identify the member sites that you want to connect with the site link, create a site link object in the respective Inter-Site Transports container, and then name the site link. 建立的網站連結之後,您就可以設定此網站的連結。After you create the site link, you can proceed to set the site link properties.

在建立時網站的連結,請確定的網站連結中包含每個網站。When creating site links, ensure that every site is included in a site link. 此外,確定所有網站的都連接到彼此透過其他網站的連結,變更可以從中的任何網站網域控制站複製到 [所有其他網站。In addition, ensure that all sites are connected to each other through other site links so that the changes can be replicated from domain controllers in any site to all other sites. 如果您無法執行此動作,也在事件檢視器這部該網站拓撲未連接 Directory 服務木頭中的錯誤訊息。If you fail to do this, an error message is generated in the Directory Service log in Event Viewer stating that the site topology is not connected.

每當您將網站新增到新建立的網站連結,判斷要新增網站其他網站的連結的成員,以及變更如有需要網站的網站連結成員資格。Whenever you add sites to a newly created site link, determine if the site being added is a member of other site links, and change the site link membership of the site if needed. 例如,如果您將網站 Default-First-Site-Link 最初建立網站時,務必將網站從 Default-First-Site-Link 移除之後,您將網站新增到新的網站連結。For example, if you make a site a member of the Default-First-Site-Link when you initially create the site, be sure to remove the site from the Default-First-Site-Link after you add the site to a new site link. 如果您不要移除 Default-First-Site-Link 網站,知識一致性檢查程式 (KCC) 將路由根據這兩個網站連結,可能會導致路由不正確的成員資格。If you do not remove the site from the Default-First-Site-Link, the Knowledge Consistency Checker (KCC) will make routing decisions based on the membership of both site links, which may result in incorrect routing.

找出您想要使用的網站連結連接成員網站,使用清單中的位置連結錄製」地理位置和通訊連結「(DSSTOPO_1.doc) 試算表中的位置。To identify the member sites that you want to connect with a site link, use the list of locations and linked locations that you recorded in the "Geographic Locations and Communication Links" (DSSTOPO_1.doc) worksheet. 如果多個網站相同連接與可用性彼此,您可以使用相同的網站連結連接它們。If multiple sites have the same connectivity and availability to each other, you can connect them with the same site link.

台間傳輸容器提供的連結使用傳輸到對應的網站連結。The Inter-Site Transports container provides the means for mapping site links to the transport that the link uses. 當您建立一個網站連結物件時,您的 IP 容器,透過 IP 傳輸關聯遠端程序呼叫 (RPC) 的網站連結或簡易郵件傳輸通訊協定 (SMTP) 容器關聯 SMTP 傳輸網站連結中建立它。When you create a site link object, you create it in either the IP container, which associates the site link with the remote procedure call (RPC) over IP transport, or the Simple Mail Transfer Protocol (SMTP) container, which associates the site link with the SMTP transport.

注意

SMTP 複寫將不支援在未來版本中的 Active Directory Domain Services (AD DS)。因此,不建議的網站連結物件建立 SMTP 容器中。SMTP replication will not be supported in future versions of Active Directory Domain Services (AD DS); therefore, creating site links objects in the SMTP container is not recommended.

當您在各間台傳輸容器建立的網站連結物件時,AD DS 會使用透過 IP RPC 網域控制站之間傳送台間和站台間複寫。When you create a site link object in the respective Inter-Site Transports container, AD DS uses RPC over IP to transfer both intersite and intrasite replication between domain controllers. 在傳送時保護資料安全,透過 IP 複寫 RPC 使用這兩個 Kerberos 驗證通訊協定與資料加密。To keep data secure while in transit, RPC over IP replication uses both the Kerberos authentication protocol and data encryption.

無法使用直接 IP 連接時,您可以設定複寫之間使用 SMTP 網站。When a direct IP connection is not available, you can configure replication between sites to use SMTP. 不過,SMTP 複寫功能有限且需要企業憑證授權單位。However, SMTP replication functionality is limited and requires an enterprise certification authority (CA). SMTP 只能複寫設定、架構,以及應用程式 directory 磁碟分割,而且不支援的複寫網域 directory 磁碟分割。SMTP can only replicate the configuration, schema, and application directory partitions and does not support the replication of domain directory partitions.

若要命名網站連結、使用一致命名配置,例如 name_of_site1-name_of_site2。To name site links, use a consistent naming scheme, such as name_of_site1-name_of_site2. 記錄清單的網站、連結的網站和連接試算表中的這些網站的網站連結的名稱。Record the list of sites, linked sites, and the names of the site links connecting these sites in a worksheet. 為協助您錄製網站和相關的網站連結名稱試算表,查看工作協助工具的 Windows Server 2003 部署套件 (http://go.microsoft.com/fwlink/?LinkID=102558),下載 Job_Aids_Designing_and_Deploying_Directory_and_Security_Services.zip,並打開」的網站和相關聯的網站連結」(DSSTOPO_5.doc)。For a worksheet to assist you in recording site names and associated site link names, see Job Aids for Windows Server 2003 Deployment Kit (http://go.microsoft.com/fwlink/?LinkID=102558), download Job_Aids_Designing_and_Deploying_Directory_and_Security_Services.zip, and open"Sites and Associated Site Links" (DSSTOPO_5.doc).

本指南In this guide

設定的網站連結屬性Setting Site Link Properties