Networking Forums

Networking Forums > Computer Networking > Windows Networking > Domain Controller with 2 NICs

Reply
Thread Tools Display Modes

Domain Controller with 2 NICs

 
 
Alan
Guest
Posts: n/a

 
      02-22-2007, 08:14 PM
Hi,

I have a Win2000 Domain (Ex. domain.local) setup with 2 DCs, and each one
with 2 Nic cards. The first card will be assigned a public address with
gateway, and the 2nd card with a private address with no gateway. It's been
working fine for more than 3 yrs. One of the DC is setup as a NAT router
using RRAS for internet access on the private network. Recently I am setting
up a new DC with Windows 2003 R2 also with 2 Nic cards with the same setup,
but the problem is when I tried to promo the server into a DC using dcpromo,
it failed to find the domain. If I disable the NIC with public IP, then the
dcpromo went smoothly. After the server becomes the 3rd DC of a Windows 2000
domain still with only a Nic with private IP, I was able to browse the
domain and look at which DC is the Operation Master. I enable the Nic with a
public IP address and reboot the new DC, I tried to see which DC is the
Operation Master again and it failed.

The question I want to ask is how come the same setup works on Windows 2000
server but not Windows 2003? Was anything changed in Windows 2003, so that
it no longer works in this setup? Should I setup my Domain this way with 2
Nics? The main reason is to have one DC serve also as a NAT router to
provide users with internet access. I know I could simply get a cheap DSL
router to do the job, but if the DC can serve this function, then I don't
want to add anything extra.

--
Thanks,
Alan


 
Reply With Quote
 
 
 
 
Bill Grant
Guest
Posts: n/a

 
      02-23-2007, 12:41 AM
It is not a good idea to multihome DCs. It never was, even back in NT
days. In NT it caused problems with Netbios name resolution and browsing.
With W2k/W2k3 that is still a problem, and you also now have problems with
DNS names because of dynamic DNS. The basic reason for the problems is that
you have two IP addresses associated with one machine name. If a name
resolves to the "wrong" IP you don't get what you expect.

The only OS which runs correctly "out of the box" in this config is SBS
(because it is designed as a one server does everything system). There are
ways to get it to work on Windows Server standard edition, but it is easier
to avoid the problem by not using a DC as a router. Similar warnings apply
to using a DC as a remote access server, because they also become multihomed
when a remote user connects.

Why not run two servers as single homed DCs and run the third as a
standalone NAT router?

"Alan" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
> Hi,
>
> I have a Win2000 Domain (Ex. domain.local) setup with 2 DCs, and each one
> with 2 Nic cards. The first card will be assigned a public address with
> gateway, and the 2nd card with a private address with no gateway. It's
> been working fine for more than 3 yrs. One of the DC is setup as a NAT
> router using RRAS for internet access on the private network. Recently I
> am setting up a new DC with Windows 2003 R2 also with 2 Nic cards with the
> same setup, but the problem is when I tried to promo the server into a DC
> using dcpromo, it failed to find the domain. If I disable the NIC with
> public IP, then the dcpromo went smoothly. After the server becomes the
> 3rd DC of a Windows 2000 domain still with only a Nic with private IP, I
> was able to browse the domain and look at which DC is the Operation
> Master. I enable the Nic with a public IP address and reboot the new DC, I
> tried to see which DC is the Operation Master again and it failed.
>
> The question I want to ask is how come the same setup works on Windows
> 2000 server but not Windows 2003? Was anything changed in Windows 2003,
> so that it no longer works in this setup? Should I setup my Domain this
> way with 2 Nics? The main reason is to have one DC serve also as a NAT
> router to provide users with internet access. I know I could simply get a
> cheap DSL router to do the job, but if the DC can serve this function,
> then I don't want to add anything extra.
>
> --
> Thanks,
> Alan
>



 
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Re: Windows cannot obtain the domain controller name for your computer network. (The specified domain either does not exist or could not be contacted. ). Group Policy processing aborted. Ace Fekay [MVP-DS, MCT] Windows Networking 1 01-10-2010 11:08 PM
Clients can't join domain-new Primary Domain Controller installed blinton25 Windows Networking 7 06-23-2008 09:58 PM
Server 2003 Standard - Cannot browse domain with domain controller! davidw@dwynn.demon.co.uk Windows Networking 2 04-12-2006 04:28 PM
Moving a domain 2003 domain controller to a different subnet John zhang Windows Networking 1 07-27-2004 01:41 PM
Which Domain Controller? Ian Windows Networking 0 12-18-2003 05:42 PM



1 2 3 4 5 6 7 8 9 10 11