why my RODC is writing Computer and user accounts deletions to DC


hi,

i have dc , rodc on same site. if delete computer/user account in rodc it's replicating dc i.e deleted accounts in rodc deleted dc also).

how configure rodc unidirectional(it has read dc not write), ever deleted in rodc(user\computer) should n't affect on dc .

am using server 2008 both dc , rodc.

thanks

kalyan


thanks kalyan


hi,

i have dc , rodc on same site. if delete computer/user account in rodc it's replicating dc i.e deleted accounts in rodc deleted dc also).

how configure rodc unidirectional(it has read dc not write), ever deleted in rodc(user\computer) should n't affect on dc .

am using server 2008 both dc , rodc.

thanks

kalyan


thanks kalyan


this flawed design keeping rodc in same rwdc site. logic of keeping rodc in rwdc site? rodc kept in sites, don't have adequate security or can't afford keep ad experts. in case changes made rodc site not replicate dc. don't have provide domain admin account local admin manage resources in rodc sites file share permission or rodc manageability.

if site have rwdc, there no need rodc, should using additional domain controller instead of rdoc.

all (rodc)read domain controllers   http://awinish.wordpress.com/2011/10/04/rodc-read-only-domain-controller/

also, using rodc can still connect console of rwdc make changes directly on rwdc w/o realizing, changes not made on rodc rwdc.


awinish vishwakarma - mvp

my blog: awinish.wordpress.com

disclaimer posting provided as-is no warranties/guarantees , confers no rights.



Windows Server  >  Directory Services



Comments

Popular posts from this blog

some help on Event 540

WMI Repository 4GB limit - Win 2003 Ent Question

Event ID 1302 (error 1307) DFS replication service encountered an error while writing to the debug log file