Forum Discussion
RippieUK
Apr 16, 2021Brass Contributor
Joining a DMZ server to the domain
Hi all, Quick question. I have a Read-Only Domain Controller in my DMZ who has access to 2 writeable domain controllers through the firewall. Yesterday i had to disjoin a server in the DMZ an...
Dave Patrick
Apr 16, 2021MVP
Seems the firewall may be too restrictive.
What operations fail if the WAN is offline, but the RODC is online in the branch office?
- If the RODC cannot connect to a writable domain controller running Windows Server 2008 in the hub, the following branch office operations fail:
- Password changes
- Attempts to join a computer to a domain
- Computer rename
- Authentication attempts for accounts whose credentials are not cached on the RODC
- Group Policy updates that an administrator might attempt by running the gpupdate /force command
RODC Frequently Asked Questions | Microsoft Docs