I'm not doing any software installation or running scripts at those
sites, so I don't know if it will make a difference, but I'll try and
see what happens.  Thanks for the suggestion.

 

Ralph Smith

 

________________________________

From: Steven M. Caesare [mailto:[email protected]] 
Sent: Thursday, August 13, 2009 9:49 AM
To: NT System Admin Issues
Subject: RE: PC in domain across stable VPN tunnel?

 

Enable slow link GPO processing?

 

-sc

 

From: Ralph Smith [mailto:[email protected]] 
Sent: Thursday, August 13, 2009 9:35 AM
To: NT System Admin Issues
Subject: RE: PC in domain across stable VPN tunnel?

 

I have 5 sites without domain controllers connected to our main site by
VPN (Cisco PIX at each end).  They have between 2 and 8 PCs at each
site, with 2meg down and 384K up business class cable at each remote
site, and 1.5/1.5 SHDSL at the main site (which is dedicated to VPNs
with these 5 and sites and 3 larger sites that do have local DCs).

For DNS at the serverless sites, the first entry is a DNS server at the
main site, and the second entry is one of the OpenDNS servers.

Works fine for us, the only issue is taking a long time to apply
computer policies when booting up - about 5 minutes.  I just tell them
to turn on the computer and go get coffee or do something else for a few
minutes.

 

Ralph Smith

  

From: Tom Miller [mailto:[email protected]] 
Sent: Wednesday, August 12, 2009 5:18 PM
To: NT System Admin Issues
Subject: PC in domain across stable VPN tunnel?

 

Hey folks:

 

I have about 15 sites that have 2- 5 users/PCs that have "business
class" broadband (a bit faster than typical home access).  Soon I plan
to provide each site a soho firewall and will have a VPN tunnel from
each site to here at HQ.  

 

I'd love to be able to add these PCs to our domain so I could enforce
our various GPOs at these locations.  Has anyone done this?  I already
have several tunnels like this at other locations but haven't added the
PCs to the domain.

 

I'm not sure about the cross-tunnel authentication, but if it's not too
slow (no mapped drives or logon scripts), I'd do it.  It would be nice
to have these users log into the domain as well.

 

Comments, suggestions, words of wisdom?

 

 

 

 

Tom Miller
Engineer, Information Technology
Hampton-Newport News Community Services Board
757-788-0528 

Confidentiality Notice: This e-mail message, including attachments, is
for the sole use of the intended recipient(s) and may contain
confidential and privileged information. Any unauthorized review, use,
disclosure, or distribution is prohibited. If you are not the intended
recipient, please contact the sender by reply e-mail and destroy all
copies of the original message. 

 

 

 

* * * 

 

This E-mail, along with any attachments, is considered confidential and
may well be legally privileged. If you have received it in error, you
are on notice of its status. Please notify us immediately by reply
e-mail and then delete this message from your system. Please do not copy
it or use it for any purposes, or disclose its contents to any other
person. Thank you for your cooperation. 

* * * 

To ensure compliance with Treasury Department regulations, we inform you
that, unless otherwise indicated in writing, any U.S. Federal tax advice
contained in this communication  (including any attachments) is not
intended or written to be used, and cannot be used, for the purpose of
(1) avoiding penalties under the Internal Revenue Code or applicable
state and local provisions or (2) promoting, marketing or recommending
to another party any tax-related matters addressed herein. 

Disclaimer Version RS.US.1.01.03

pdc1

 

 

 

Confidentiality Notice:

******************

This communication, including any attachments, may contain confidential
information and is intended only for the individual or entity to whom it
is addressed. Any review, dissemination, or copying of this
communication by anyone other than the intended recipient is strictly
prohibited. If you are not the intended recipient, please contact the
sender by reply email, delete and destroy all copies of the original
message.

 

 

 

 

 

Confidentiality Notice: 

----------------------------------



This communication, including any attachments, may contain confidential 
information and is intended only for the individual or entity to whom it is 
addressed. Any review, dissemination, or copying of this communication by 
anyone other than the intended recipient is strictly prohibited. If you are not 
the intended recipient, please contact the sender by reply email, delete and 
destroy all copies of the original message.

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

Reply via email to