Hello,
Thanks for your post and thanks Bill Grant for the information he shared.
This is Neo and I will be assisting you in this post.
From your description, I understand that:
Currently, you have an AD-based domain. You have three DCs in three
locations. The Internet connection speed between the first location and the
other two is slow. Your requirement is to force the clients in the first
location to use local DC for logon authentication.
If there is any misunderstanding, please let me know.
Generally speaking, AD based domains are site-aware. We can use AD Sites
and Services MMC snap-in to create 3 Subnet objects for the 3 physical
network, create 3 Site objects, and associate the Site objects to the
corresponding Subnet objects. After that, we should also manually move the
DCs to the related sites.
When user in the first location logs on, it will automatic identify which
physical network it locates and then find the related Subnet, Site objects
and the related DC. It always try to authenticate with the DC in its own
site.
For more information, please refer to:
Managing Sites
http://technet.microsoft.com/en-us/l.../bb727051.aspx
Windows 2000 Active Directory Sites and Services
http://www.microsoft.com/technet/sec.../w2kccadm/adsi
tes/w2kadm37.mspx
I hope this helps. Thanks.
Sincerely,
Neo Zhu,
Microsoft Online Support
Microsoft Global Technical Support Center
Get Secure! -
www.microsoft.com/security
================================================== ===
When responding to posts, please "Reply to Group" via your newsreader so
that others may learn and benefit from your issue.
================================================== ===
This posting is provided "AS IS" with no warranties, and confers no rights.