Get answers from your peers along with millions of IT pros who visit Spiceworks. Best Answer. Jay This person is a verified professional. Verify your account to enable IT peers to see that you are a professional. Per MS, " The global catalog provides the ability to locate objects from any domain without having to know the domain name. View this "Best Answer" in the replies below ». Which of the following retains the information it's storing when the system power is turned off?
Submit ». Dijit, I think one concern is replication, while it is not bad to have many replication partners, any changes to objects in AD won't be known to all DC's until replication happens between DC's. JustinCredible This person is a verified professional.
Cl sh-i0n Nov 26, at UTC. Thai Pepper. Chris Nov 27, at UTC. These are the changes regarding such a domain controllers: The domain controller stores information about all objects of all domains of the entire forest. Not the complete set of attributes for these objects are stored, but only the most important. The Global catalog servers replicate the data with all other GCs in the forest.
For this the Global Catalog function increases replication load on the regarding server. All requests to the Global Catalog are Read Only.
When you have multiple domains in the forest, the global catalog provides users a way of finding the resources within other domains.
The global catalog also provides universal group membership information in processing logons so that a user's credentials can be accurately determined. You can, of course, choose how many global catalog servers you have. Because every domain controller stores the only domain directory partition in the forest, configuring each domain controller as a global catalog server does not require any additional disk space usage, CPU usage, or replication traffic.
In a single-domain forest, all domain controllers act as virtual global catalog servers; that is, they can all respond to any authentication or service request. This special condition for single-domain forests is by design. Authentication requests do not require contacting a global catalog server as they do when there are multiple domains, and a user can be a member of a universal group that exists in a different domain.
However, only domain controllers that are designated as global catalog servers can respond to global catalog queries on the global catalog port To simplify administration in this scenario and to ensure consistent responses, designating all domain controllers as global catalog servers eliminates the concern about which domain controllers can respond to global catalog queries.
In multiple-domain forests, global catalog servers facilitate user logon requests and forest-wide searches. The following illustration shows how to determine which locations require global catalog servers. In most cases, it is recommended that you include the global catalog when you install new domain controllers. The following exceptions apply:.
0コメント