Networking Forums

Networking Forums > Computer Networking > Windows Networking > short on hardware - what can run with AD?

Reply
Thread Tools Display Modes

short on hardware - what can run with AD?

 
 
David
Guest
Posts: n/a

 
      12-08-2006, 02:10 PM
small company with only a few servers and under 40 users.

In general what network services are ok to run on a 2003 domain controller?
I realize ideally there should be nothing but AD on it (mainly for security
reasons if I understand correctly) but there are some things that really
should *not* be running on a DC for other known issues... what are they?

for lack of hardware reasons I need to consolate as many services as
possible between 4 servers. One of those servers does nothing but act as a
firewall and I'm not even considering it to do anything but that. That
leaves me 3 servers to divide up the following:

standard network services:
AD/DNS
WINS
DHCP
File & Print services

production servers:
EXCHANGE 2003
SQL 2000 production database
Symantec Antivirus Enterprise

I realize if your still reading you are probably thinking that you have no
idea what level of hardware I have and so there is no way to suggest
anything. I am not considering user load at this point (yet), only what
services can play together without causing stability issues.

I am considering running everyting listed under 'standard network services'
on one server and this post is the beginning of me looking into whether or
not I should do that. Since i've written this much I mind as well also
include where I am looking at putting everything else. This is my initial
plan that I need to research for problems.

server 1) firewall
server 2) AD / DNS(AD integrated) / WINS / DHCP / File & Print
server 3) Exchange 2003 / symantec parent server
server 4) SQL 2000 / additional DC

the reason I started the post was to start looking into what is ok to run
with AD but at this point I guess I should just say any input on any of this
is welcome and would be appreciated. Thanks.


 
Reply With Quote
 
 
 
 
Danny Sanders
Guest
Posts: n/a

 
      12-08-2006, 02:24 PM
If you want to know what MS will put on one AD DC look at SBS.

While your at it consider virtual server
See:
http://www.microsoft.com/windowsserv...r/default.mspx

hth
DDS
"David" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
> small company with only a few servers and under 40 users.
>
> In general what network services are ok to run on a 2003 domain
> controller? I realize ideally there should be nothing but AD on it (mainly
> for security reasons if I understand correctly) but there are some things
> that really should *not* be running on a DC for other known issues... what
> are they?
>
> for lack of hardware reasons I need to consolate as many services as
> possible between 4 servers. One of those servers does nothing but act as a
> firewall and I'm not even considering it to do anything but that. That
> leaves me 3 servers to divide up the following:
>
> standard network services:
> AD/DNS
> WINS
> DHCP
> File & Print services
>
> production servers:
> EXCHANGE 2003
> SQL 2000 production database
> Symantec Antivirus Enterprise
>
> I realize if your still reading you are probably thinking that you have no
> idea what level of hardware I have and so there is no way to suggest
> anything. I am not considering user load at this point (yet), only what
> services can play together without causing stability issues.
>
> I am considering running everyting listed under 'standard network
> services' on one server and this post is the beginning of me looking into
> whether or not I should do that. Since i've written this much I mind as
> well also include where I am looking at putting everything else. This is
> my initial plan that I need to research for problems.
>
> server 1) firewall
> server 2) AD / DNS(AD integrated) / WINS / DHCP / File & Print
> server 3) Exchange 2003 / symantec parent server
> server 4) SQL 2000 / additional DC
>
> the reason I started the post was to start looking into what is ok to run
> with AD but at this point I guess I should just say any input on any of
> this is welcome and would be appreciated. Thanks.
>



 
Reply With Quote
 
Joe Richards [MVP]
Guest
Posts: n/a

 
      12-08-2006, 03:10 PM
Why won't you run extra things on your firewall server? For security?
That is he same reason why you shouldn't run extra things on your DC.
The DC is your primary security point for your entire Windows
infrastructure. At most I would run DNS and WINS on it.

I would also have more than one DC or be intimately familiar with how to
do a recovery so you know exactly how long your entire Windows
environment will be down when it blows up.

You may also want to look at SBS. They do a lot of things with SBS that
aren't really considered by most companies to be best practice for how
you treat your DC but it sounds like you have a small business and most
small businesses are willing to sacrifice security for cash. If you do
so, at least do it on a platform that was set up with that in mind.

--
Joe Richards Microsoft MVP Windows Server Directory Services
Author of O'Reilly Active Directory Third Edition
www.joeware.net


---O'Reilly Active Directory Third Edition now available---

http://www.joeware.net/win/ad3e.htm


David wrote:
> small company with only a few servers and under 40 users.
>
> In general what network services are ok to run on a 2003 domain controller?
> I realize ideally there should be nothing but AD on it (mainly for security
> reasons if I understand correctly) but there are some things that really
> should *not* be running on a DC for other known issues... what are they?
>
> for lack of hardware reasons I need to consolate as many services as
> possible between 4 servers. One of those servers does nothing but act as a
> firewall and I'm not even considering it to do anything but that. That
> leaves me 3 servers to divide up the following:
>
> standard network services:
> AD/DNS
> WINS
> DHCP
> File & Print services
>
> production servers:
> EXCHANGE 2003
> SQL 2000 production database
> Symantec Antivirus Enterprise
>
> I realize if your still reading you are probably thinking that you have no
> idea what level of hardware I have and so there is no way to suggest
> anything. I am not considering user load at this point (yet), only what
> services can play together without causing stability issues.
>
> I am considering running everyting listed under 'standard network services'
> on one server and this post is the beginning of me looking into whether or
> not I should do that. Since i've written this much I mind as well also
> include where I am looking at putting everything else. This is my initial
> plan that I need to research for problems.
>
> server 1) firewall
> server 2) AD / DNS(AD integrated) / WINS / DHCP / File & Print
> server 3) Exchange 2003 / symantec parent server
> server 4) SQL 2000 / additional DC
>
> the reason I started the post was to start looking into what is ok to run
> with AD but at this point I guess I should just say any input on any of this
> is welcome and would be appreciated. Thanks.
>
>

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
VERSACE , Man Short nashirt3@163.com Wireless Internet 0 05-05-2009 08:06 AM
Life is too short mayashathvalani@gmail.com Home Networking 0 06-20-2008 04:11 AM
very short range Andreas Y. Wireless Networks 4 02-08-2008 12:30 AM
short packets? Siglinux Windows Networking 0 10-02-2006 02:41 PM
Short AOL ADSL Who me? Broadband 1 07-17-2006 07:14 PM



1 2 3 4 5 6 7 8 9 10 11