Thursday, November 22, 2018

Active Directory Domain Names - Forest/Tree/Children



I've been doing some reading on suggested top-level-domains for AD and whatnot. I used to setup domains as company.local and that worked just fine, however, more people want to use their external domain company.com instead of the .local suffix.



I've got a quick clarification question, how am I supposed to set up my first forest if we're going to actually use our registered domain name?




It's easy enough to setup a new forest with company.com but wouldn't I then have to add a child-domain of corp.company.com to a new DC? Essentially requiring two DCs just to set up the one domain.



Or would I create the first forest as corp.company.com and be done with it? That seems to make a lot more sense.


Answer



Bingo on your last statement.



Set up your AD forest as corp.



corp.company.com.




Edit: Also read this post by MDMarra: What should I name my Active Directory?


No comments:

Post a Comment

linux - How to SSH to ec2 instance in VPC private subnet via NAT server

I have created a VPC in aws with a public subnet and a private subnet. The private subnet does not have direct access to external network. S...