Also, make sure you have bridge all sitelinks disabled. Since you don't
have complete network connectivity to all sites.
Also check out an article I have on firewalled off dc's at:
http://www.pbbergs.com/windows/articles.htm
Firewall Ports Needed For Replication
Next I would make sure the Firewalled each dc's on the other side of the
firewall aren't advertising that they can service everyone. Check out an
article on this, also on my website.
Prevent DC's from registering Service Records
--
Paul Bergson
MVP - Directory Services
MCITP - Enterprise Administrator
MCTS, MCT, MCSE, MCSA, MCP, Security +, BS CSci
2008, Vista, 2003, 2000 (Early Achiever), NT4
Microsoft's Thrive IT Pro of the Month - June 2009
http://www.pbbergs.com Twitter - @pbbergs
Please no e-mails, any questions should be posted in the NewGroups. This
posting is provided "AS IS" with no warranties and confers no rights.
"Florian Frommherz [MVP]" <> wrote in
message news:...
> Howdie!
>
> Am 18.05.2010 21:00, schrieb Mark Z.:
>> I have clients on both the CORPORATE.COMPANY.NET and
>> RETAILSTORES.COMPANY.NET domains outside the firewall, but now the
>> SITE-RETAILCORP-HQ can't be assigned a subnet, and this site has the only
>> DC
>> (RETAILDC1) outside the firewall for the RETAILSTORES.COMPANY.NET domain.
>>
>> Now what?
>
> Create a subnet for that single DC if necessary - use the subnet IP of the
> DC with the suffix /32. That creates an IP for only that specific IP.
>
> Cheers,
> Florian