RE: domain authentication

From: Evan Mann (emann@questinc.org)
Date: 12/27/01


From: Evan Mann <emann@questinc.org>
To: focus-ms@securityfocus.com
Date: Thu, 27 Dec 2001 08:28:50 -0500

Thanks to all who responded to my domain authentication post. I quickly saw
the my concerns shouldn't be existing. I've never had problems with people
authenticating but stumbled across one the other day, which ended up having
to do with VPN access only to the PDC and I guess the timeout I set was
still not long enough for the machine to hit the PDC (only tried 60 seconds
as the max).

In any event, I fixed my problem and learned about how NT4 is designed for
authentication. My PDC is actually fairly low load 99% of the time.

Some people answered my questions about when I upgrade to a Win2000 domain,
but I have a particular one.

My network topology puts an NT4 BDC in every building on my WAN, giving me 7
BDCs in 7 different locations. My main office than has 1 BDC and the PDC.
When I upgrade to Win2000 domain, would it be the proper thing to do to
upgrade my PDC, then begin upgrading the BDC's, or would it be better to
upgrade the BDCs to Win2000 Server and then ultimately the PDC to 2000+AD ?
(The only problem I see with the 2nd one is all these Win2000 clients I have
at locations with BDCs won't be able to authenticate with that local server,
or will they?)



Relevant Pages

  • Re: NT4 to Win 03
    ... > users access to NT 4.0 file/application servers, ... In other words, if I upgrade my ... replication between NT 4.0 BDCs and AD DCs in the same domain. ... > the NT domain to the AD domain, or upgrade, by upgrading the NT PDC first. ...
    (microsoft.public.windows.server.migration)
  • Re: NT4 WINS in a W2K3 Forest
    ... WINS is on our BDCs. ... Can we upgrade the PDC to W2k3 and establish the active directory, ... Microsoft highly recommends that the server has a ...
    (microsoft.public.windows.server.migration)
  • Re: NT4 WINS in a W2K3 Forest
    ... You may upgrade the PDC to Windows 2003 DC and leave WINS running ... on the BDCs until you are ready to migrate WINS. ... Microsoft Online Partner Support ...
    (microsoft.public.windows.server.migration)
  • Re: PDC only
    ... The BDCstill authenticate users after the PDC is upgraded to 2000/2003. ... authenticate to the NT 4.0 BDCs will not be able to use Group Policies, ... your DNS name myntdomain.local or myntdomain.net. ... - It's usually best to do a clean install of an OS - not an upgrade. ...
    (microsoft.public.windows.server.migration)
  • Re: NT4 to Win 03
    ... the NT domain to the AD domain, or upgrade, by upgrading the NT PDC first. ... But if I do not need to use NT 4.0 BDCs, but do need to continue to provide ... users access to NT 4.0 file/application servers, ... if I upgrade my PDC ...
    (microsoft.public.windows.server.migration)