Moving secondary domain controller to the DMZ .

shihas shamsudheen 26 Reputation points
2021-04-06T06:13:36.103+00:00

Dear Team,

I have one primary domain controller and one secondary domain controller. My manager wants my secondary domain controller to place in DMZ . What will be the difficulties i will face when i move the secondary domain controller to the dmz. Because we want our VPN Users to communicate that secondary domain controller only.

Thank you
Best Regards

Shihas Shamsudheen

Windows Server 2016
Windows Server 2016
A Microsoft server operating system that supports enterprise-level management updated to data storage.
2,368 questions
Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,111 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,839 questions
0 comments No comments
{count} votes

3 answers

Sort by: Most helpful
  1. Dave Patrick 426.1K Reputation points MVP
    2021-04-06T12:58:23.61+00:00
    0 comments No comments

  2. Fan Fan 15,291 Reputation points Microsoft Vendor
    2021-04-07T07:43:52.03+00:00

    Hi,

    Welcome to share here!

    If you want to Extended corporate forest into the perimeter network, it is suggested to put the RODC in the DMZ because of the security and manageability benefits .
    However, if your current integrated application writes information to the directory, you might be blocked from using the new RODC role in the perimeter network. RODCs might also have application compatibility issues that require more planning and changes to your perimeter.

    Planning Deployment of AD DS in the Perimeter Network
    More details about Deploying RODCs in the Perimeter Network

    If you decide to use a RODC in the DMZ, a new server is needed. (Or demote the second one and promote it to a RODC in DMZ)

    Hope the information will be helpful.
    Welcome to share here if you have any updates.

    Best Regards,


  3. Dave Patrick 426.1K Reputation points MVP
    2021-04-12T02:27:23.393+00:00

    Any progress or updates?

    --please don't forget to Accept as answer if the reply is helpful--

    0 comments No comments