Ace,
Not sure if you realize, but you can make all dc's gc's in a forest and the
IM role is still unneeded and can reside on a GC since there is no need for
the role.
--
Paul Bergson
MVP - Directory Services
MCITP - Enterprise Administrator
MCTS, MCT, MCSE, MCSA, MCP, Security +, BS CSci
2008, Vista, 2003, 2000 (Early Achiever), NT4
Microsoft's Thrive IT Pro of the Month - June 2009
http://www.pbbergs.com
Please no e-mails, any questions should be posted in the NewGroups. This
posting is provided "AS IS" with no warranties and confers no rights.
"Ace Fekay [MVP-DS, MCT]" <> wrote in message
news:...
"ad2009" <> wrote in message
news:E43DA49E-3DE4-43C8-9B2D-...
>
> We have a single 2003 forest/domain env't.
> We'll have 2 sites (currently only 1).
> The HQ site has a few DCs (also a GC) and an Exchange mail server.
> The remote site will have a dedicated DC for the users there to
> authenticate
> against (configured in ADSS for their subnet).
> Does this DC at this remote site need to be a GC as well to handle user
> authentication in case they lose a connection to the HQ in a single
> forest/domain env't?
>
> Thanks
In addition to what Meinolf mentioned, any time you create an AD Site, a DC
must exist in the site. Sites are designed to control replication traffic
and logon/authentication traffic. Therefore, it is advisable to have a GC.
In a single domain forest sceanrio, as Meinolf mentioned, all DCs should be
GCs, so that answers your question about the DC in theother site being a GC.
In a multi-domain forest, you would have to pick a DC that doesn't hold the
IM FSMO Role to become a GC, but since you only have one domain in the
forest, you need not worry about this rule.
I hope that helps!
--
Ace
This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.
Please reply back to the newsgroup or forum for collaboration benefit among
responding engineers, and to help others benefit from your resolution.
Ace Fekay, MVP, MCT, MCITP EA, MCTS Windows 2008 & Exchange 2007, MCSE &
MCSA 2003/2000, MCSA Messaging 2003
Microsoft Certified Trainer
Microsoft MVP - Directory Services
If you feel this is an urgent issue and require immediate assistance, please
contact Microsoft PSS directly. Please check
http://support.microsoft.com
for regional support phone numbers.