Professional Documents
Culture Documents
Module 4: Configuring Active Directory Domain Sevices Sites and Replication
Module 4: Configuring Active Directory Domain Sevices Sites and Replication
Module Overview
Overview of Active Directory Domain Services Replication Overview of AD DS Sites and Replication
Optimizing Replication
What Are Directory Partitions?
Are Replicated
Connection Objects
Version number
Time stamp
Server GUID
Optimizing Replication
In a multimaster replication model, AD DS updates can be replicated using multiple paths AD DS uses update sequence numbers, high watermarks, and up-to-dateness vectors to ensure that updates are replicated to a specific domain controller only once
B1
A3 A3
A4 A4
B3
Domain controllers Domain controllers in from various domains the same domain
B1
A3
A4
B3
Domain A topology Domain B topology Schema and configuration topology Global catalog replication
Each domain controller has two replication partners for each Active Directory partition The KCC creates two one-way connection objects between replication partners to ensure that no two domain controllers are ever more than three network hops away When a new domain controller is added to a site, the KCC recalculates connection objects Connection objects can replicate one or more partitions
Site
IP Subnet
Site Link
IP Subnet
B3
Site
IP Subnet
Site
B1
B2
Site Link
B3
Site
Assumes fast and highly reliable network links Does not compress replication traffic Uses a change notification mechanism
A2
IP Subnet
Replication
A1
IP Subnet
IP Subnet
Replication
A2
B1
IP Subnet
Replication
B2
IP Subnet Replication
Replication Between Sites: Assumes limited available bandwidth and unreliable network links Compresses all replication traffic between sites Occurs on a manual schedule
The inter-site topology generator defines the replication between sites on a network
Bridgehead server
A2
Replication
IP Subnet
B1 IP Subnet B2 Replication
Replication IP Subnet
Bridgehead server
Unidirectional replication ensures that changes to a read-only domain controller are never replicated to any other domain controller
and Scheduling
What Is Site Link Bridging? Demonstration: Modifying Site Link Bridges What Is Universal Group Membership Caching? Demonstration: Configuring Universal Group
Membership Caching
Managing Replication
A1
IP Subnet
Replication
IP Subnet
IP Subnet
B1 Bridgehead Server
IP Subnet
B3 IP Subnet
Site Link AB
Site B
Site Link BC
Site A
IP Subnet IP Subnet
Site C
IP Subnet IP Subnet
Enables domain controllers in a site with no global catalog servers to cache universal group membership
IP Subnet
Bridgehead server
A2
IP Subnet
IP Subnet
B1
IP Subnet
Bridgehead server
Logon information
Administrator Pa$$w0rd
Lab Review
What additional changes would you need to make to the
AD DS site configuration if you needed to ensure that all replication traffic in the New-York site passed through NYC-DC2? implemented another WAN connection between Tokyo and London, and wanted to use that WAN connection for AD DS replication instead of routing all replication changes through NewYork-Site? update their IP addresses in DNS?
Tools