Header Ads

Header ADS

RODC = Read Only Domain Controller

 


 


 Hello, Everybody what's Up? I'am Md Kamrul Hasan with you , Today I wanna try to  discuss about RODC  and How to configure it.


1. What is Rodc? 

Ans: Read-only domain controller (RODC) is a server that hosts an Active Directory database's read-only partitions and responds to security authentication requests. That,s means this domain controller don't change ,modify or delete the data or anything . It's Only for Read .


2. Why we are use this ? 

 The main reason for using an RODC is mainly for security purposes, while also providing domain resiliency at remote offices. If a remote office has poor physical security or is only serving a small number of very non-IT minded staff, there is no good reason to have a fully writable domain controller onsite. When you take a moment to consider what is held on a domain controller—namely all of your Company user accounts, including your infrastructure accounts—if these were to be compromised, it would be a massive security risk to your network. 

This is where a RODC can play an important  role in securing remote offices and not putting a company’s security at risk if their server is stolen or hacked.

to know about more Click Here

Let's see How to configure it.

Diagram



 

Frist of all, we are install a sever (JRODC) which is under the domain of abc.local (main domain)

                Note:  J = Jamalpur






 

 





 

 

 

 







 

 

 

 





 

 

 

 







 

 

 

 





 

 

 

 



 

 





 

 

 

 





 

 

 

 





 

 

 

 







 

 

 

 



 

 





 

 

 

 





 

 

 

 






 

 

 

 





 

 

 

 





 

 

 

 





 

 

 

 





 

 

 

 





 

 

 

 





 

 

 

 





 

 

 

 





 

 

 

 





 

 

 

 



 

 





 

 

 

 





 

 

 

 





 



 

 





 

 

 

 





 

 

 

 





 

 

 

 





 

 

 

 





 

 

 

 





 

 

 





Go to > JRODC > Tools > Active Directory user and Computer





 

 


Here is no new option because JRODC (name) is Only For Read, Which is the Properties of RODC





 

 

 


Now, if we check the main domain (abc.local)

Tools > Active Directory User and Computers >Doman Controllers > (JRODC)




So , This is the process of RODC.



No comments

Powered by Blogger.