I have a standard DC1 on the main office (subnet 192.168.2.0/24) and a RODC1 on a remote office (subnet 192.168.13.0/24) . The two subnet are connected throw VPN
On Site and Services there is s specific site (for the remote office) and a subnet (192.168.14.0/24) that is linked with the remote RODC. Alo the default-first-site-name is linked with subnet 192.168.2.0/24
On the remote office client if check logonserver values and with systeminfo it always show \DC1
Ip is configured to use RODC1 as dns server but anyway the client try to logon to the DC1.
User and computer acount are added to the allowed RODC password replication group
I read that the main rules for the client to choose the dc is the network distance but this seems to be not applied.
Why this happen? What I have to check or modify? If the VPN goes down the user is not able to login