Networking Forums

Networking Forums > Computer Networking > Windows Networking > Windows server 2003 as part of an NT domain

Reply
Thread Tools Display Modes

Windows server 2003 as part of an NT domain

 
 
=?Utf-8?B?ZGVjbGFuYg==?=
Guest
Posts: n/a

 
      04-16-2004, 02:36 PM
Hi there

I'm hoping to install a windows 2003 server onto an existing NT domain. The machine will operate as a VPN server for remote users via ADSL. In the coming months I am hoping to use this machine as a PDC for this same domain. My questions and concerns are

- Is it possible to have this machine join the existing NT domain as a BDC
- If yes, can it be promoted to PDC without any major issues at a later stage
- are there any glaring security issues involved with having a domain controller as a VPN server

Any help greatly appreciated
 
Reply With Quote
 
 
 
 
Phillip Windell
Guest
Posts: n/a

 
      04-16-2004, 03:31 PM
Aside from the obvious security issues, it is a bad idea to multi-home a
Domain Controller and VPN boxes are usually multi-homed.


--

Phillip Windell [MCP, MVP, CCNA]
www.wandtv.com


"declanb" <(E-Mail Removed)> wrote in message
news:C7DF71F5-481D-4FFE-92AC-(E-Mail Removed)...
> Hi there,
>
> I'm hoping to install a windows 2003 server onto an existing NT domain.

The machine will operate as a VPN server for remote users via ADSL. In the
coming months I am hoping to use this machine as a PDC for this same
domain. My questions and concerns are:
>
> - Is it possible to have this machine join the existing NT domain as a

BDC?
> - If yes, can it be promoted to PDC without any major issues at a later

stage?
> - are there any glaring security issues involved with having a domain

controller as a VPN server?
>
> Any help greatly appreciated



 
Reply With Quote
 
Matthew [MSFT]
Guest
Posts: n/a

 
      04-16-2004, 03:59 PM
Hi,

Windows 2003 cannot be installed as a BDC on an NT Domain, only as a member
server.

Here is a link to information for this upgrade process for a Windows NT
domain to Windows 2003:

http://www.microsoft.com/resources/d...003/all/deploy
guide/en-us/Default.asp?url=/resources/documentation/WindowsServ/2003/all/de
ployguide/en-us/dssbe_upnt_overview.asp

I would suggest running RRAS on a machine other than a DC. There are some
issues that you can run into running RRAS on a DC.

Thank you,
Matthew Fresoli
Microsoft Network Support
--

This posting is provided "AS IS" with no warranties, and confers no rights.
Use of included script samples are subject to the terms specified at
http://www.microsoft.com/info/cpyright.htm

Note: For the benefit of the community-at-large, all responses to this
message are best directed to the newsgroup/thread from which they
originated.


 
Reply With Quote
 
Robert Moir
Guest
Posts: n/a

 
      04-18-2004, 05:59 PM
declanb wrote:
> Hi there,
>
> I'm hoping to install a windows 2003 server onto an existing NT
> domain. The machine will operate as a VPN server for remote users via
> ADSL. In the coming months I am hoping to use this machine as a PDC
> for this same domain. My questions and concerns are:
>
> - Is it possible to have this machine join the existing NT domain as
> a BDC?
> - If yes, can it be promoted to PDC without any major issues at a
> later stage?
> - are there any glaring security issues involved with having a domain
> controller as a VPN server?
>
> Any help greatly appreciated


You've got some good information already but one thing I want to point out,
just to make sure you are aware of it, is that you don't promote a Windows
2000 or 2003 machine to be a DC on an existing domain, you need to upgrade
an already existing NT 4 domain controller, and this upgrades your whole
domain to active directory.

While on an operational level this is easy to do, it is a far from trivial
thing to be doing without a good deal of planning and awareness of the
consequences, in particular, if you are running an NT 4 domain, you may be
running "legacy" clients and software which may not work well with windows
2003/Active Directory without some degree of testing and tuning.

--
--
Rob Moir, Microsoft MVP for servers & security
Website - http://www.robertmoir.co.uk
Virtual PC 2004 FAQ - http://www.robertmoir.co.uk/win/VirtualPC2004FAQ.html

Kazaa - Software update services for your Viruses and Spyware.


 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
migrate part of DHCP scopes in Windows 2003 to Windows 2000 CTY Windows Networking 1 11-20-2005 05:19 AM
Windows 2003 Server in Windows 2000 Domain Lose Trust Relationship Faisal Sarwar Windows Networking 2 06-20-2005 04:51 AM
Windows 2000 server problem on a Windows 2003 server domain =?Utf-8?B?U2Fsb25nZQ==?= Windows Networking 1 02-09-2005 03:16 PM
Windows Server 2003 loses domain membership in NT domain... Paul Konchar Windows Networking 4 02-08-2005 08:40 PM
Unable to access Windows 2003 file server in a Windows 2003/XP Active Directory Domain Edward Ray Windows Networking 0 11-21-2003 03:03 AM



1 2 3 4 5 6 7 8 9 10 11