About complex network architecture design and its term


Recommended Posts

Hi all,

I have few questions puzzling me for few weeks, hope someone can guide me through as the scenario below:

Background:

Enterprise terminal clients (PC/laptop) most likely will classify into Active Directory/Cluster/Domain, and they use site-to-site VPN connection many times, this would be easier to take care of. The overall network architecture is as below:

Center -> Local Branch AD/Cluster/Domain, joined by local system with different department object unit (OU) in the domain -> these users/clients will need to grant access into specify domain in the entire AD because they are categariezed into different department/team/group.

-> Different region may have many AD/Cluster/Domain, they sometime have trusted bridge connection or site-to-site VPN connection in order to fastern certain process that need time to travel all the way back to Center

Case 1:

If one of the client system is transferring from one outlet / branch to the other one, would it be fine if this client system removed from the old domain/AD? Would that impact the entire network structure?

Case 2:

If one of the server that has a site-to-site VPN connection / trusted bridge connection to another branch, and eventually they decided to brake up the 2, what is/are the impact and would this affect the connectivity from Center to both these branches (in term of server connection). How or what should have done to avoid this?

Queries:

My udnerstanding is in AD, there are many different type of domains that served different purpose. And every single system/server is consider as object unit (OU) and they would join to either one of the domain in the AD in order to share data.

If the enterprise is big enough, and the server/major system will brake into Cluster.

-> What is/are the differences of Active Directory and Domain?

-> They is a domain controller and how can this affect the entire network structure?

Thank you all.

Regards,

A Domain is a group of computing systems or services on a network based on DNS and are most likely to be under single Administrative Control. Where, computing Systems may include any computer that the organization have, and Computing Serivces may represent any network services that is made available with the support of DNS.

Microsoft Active Directory is a repository (think of it as a database) of AD objects (resources and security principles) stored or managed in a hierarchical structure (like a tree structure). AD objects can be organized and managed into AD with help of Sites, Forests, and Domains, OUs.

I will add more as I get time.

Wow I hope you aren't charging people for your time. I don't know where to begin with what's wrong with that.

I'll have a go anyway as much as I can be bothered . . .

If one of the client system is transferring from one outlet / branch to the other one, would it be fine if this client system removed from the old domain/AD? Would that impact the entire network structure?

How or what should have done to avoid this?

Intersite replication perhaps? A basic of AD. Read up on what a domain is first and not domain name. You really need to understand the basics

They is a domain controller and how can this affect the entire network structure?

Expand please, It wont affect your "Network Infastructure" It would affect your domain infastruture ALOT

My udnerstanding is in AD, there are many different type of domains that served different purpose. And every single system/server is consider as object unit (OU) and they would join to either one of the domain in the AD in order to share data.

If the enterprise is big enough, and the server/major system will brake into Cluster.

Again NO! It doesnt break into cluster automatically. Again I think you need to read up on Windows clustering. And No thats not what an OU is.

You have a lot to understand about Active Directory and Domains

Where did you get this from??

"Enterprise terminal clients (PC/laptop) most likely will classify into Active Directory/Cluster/Domain"

Is this something you wrote?? Or is it out of some book?? To be honest its pretty much gibberish..

"Local Branch AD/Cluster/Domain, joined by local system with different department object unit (OU) in the domain"

Again --- Where did this come from.. Its Gibberish as well.

"Case 1:

If one of the client system is transferring from one outlet / branch to the other one, would it be fine if this client system removed from the old domain/AD? Would that impact the entire network structure?"

How I'm reading this. Can you move a client system (Member PC) from one Active directory domain to another.. Yes this is not a problem never was, never will be.. What impact would it have on the network structure??? Um that would be ZERO, a client means nothing -- there can be hundreds to thousands of them, they have nothing to do with the network structure at all. Worse case is if there were other clients that need to talk to this client. But as far as AD goes clients (Member PCs) have nothing to do with anything.

Case 2?? have no idea what your talking about.. Sure you can have location to location network connections.. But without understanding your overall connection topology its impossible to say what impact if any it would have.. You have not laid out any sort of topology for network connectivity between locations, nor any sort of AD Hierarchy. Are these locations part of the same forest? Are their trusts between forests or domains? Are they child domains, etc.

"there are many different type of domains that served different purpose"

Serve different purposes?? I believe your talking about a Forest, or domain or a child domain - as to serving different purposes??? Not sure what your asking??

'If the enterprise is big enough, and the server/major system will brake into Cluster"

Again at loss to understand what your wanting to ask even? Yes if the need is there then you might want to cluster servers to provide for High Availability.. But this really has nothing to directly do with Active directory. Clustering is a way to provide for fail over or load balancing.

"> What is/are the differences of Active Directory and Domain?"

Again are you confusing the term domain as used within active directory with general DNS (Domain Naming System) as used on the internet for example neowin.net is a domain?

A domain in active directory refers to all objects in a common database, now you never even mention Trees which would be either a single domain, or domain and its children -- ie all domains that fall under the same namespace. And you also make no mention of Forests which would be made up of trees and represent the security boundary of an active directory.

As to how a Domain Controller affects network structure?? Again not sure what your asking.. Network structure is outside the hierarchy of a AD structure. Yes normally you would design your active directory around your current network structure. For placement of DCs and breakup of sites, etc. But your AD structure does not dictate your network structure -- but network structure might dictate placements of of your DCs

Its not always about what the OP understands, but who else might read the thread and pickup some info, etc. ;)

Exactly! I love reading over various networking threads, especially those you have commented on. Not sure if I'll ever be a system admin, but I'm studying management information systems right now so I'm familiar (not an expert) in most of the information being discussed. With this topic, I definitely learned more about AD's. :p

Where did you get this from??

"Enterprise terminal clients (PC/laptop) most likely will classify into Active Directory/Cluster/Domain"

Is this something you wrote?? Or is it out of some book?? To be honest its pretty much gibberish..

"Local Branch AD/Cluster/Domain, joined by local system with different department object unit (OU) in the domain"

Again --- Where did this come from.. Its Gibberish as well.

"Case 1:

If one of the client system is transferring from one outlet / branch to the other one, would it be fine if this client system removed from the old domain/AD? Would that impact the entire network structure?"

How I'm reading this. Can you move a client system (Member PC) from one Active directory domain to another.. Yes this is not a problem never was, never will be.. What impact would it have on the network structure??? Um that would be ZERO, a client means nothing -- there can be hundreds to thousands of them, they have nothing to do with the network structure at all. Worse case is if there were other clients that need to talk to this client. But as far as AD goes clients (Member PCs) have nothing to do with anything.

Case 2?? have no idea what your talking about.. Sure you can have location to location network connections.. But without understanding your overall connection topology its impossible to say what impact if any it would have.. You have not laid out any sort of topology for network connectivity between locations, nor any sort of AD Hierarchy. Are these locations part of the same forest? Are their trusts between forests or domains? Are they child domains, etc.

"there are many different type of domains that served different purpose"

Serve different purposes?? I believe your talking about a Forest, or domain or a child domain - as to serving different purposes??? Not sure what your asking??

'If the enterprise is big enough, and the server/major system will brake into Cluster"

Again at loss to understand what your wanting to ask even? Yes if the need is there then you might want to cluster servers to provide for High Availability.. But this really has nothing to directly do with Active directory. Clustering is a way to provide for fail over or load balancing.

"> What is/are the differences of Active Directory and Domain?"

Again are you confusing the term domain as used within active directory with general DNS (Domain Naming System) as used on the internet for example neowin.net is a domain?

A domain in active directory refers to all objects in a common database, now you never even mention Trees which would be either a single domain, or domain and its children -- ie all domains that fall under the same namespace. And you also make no mention of Forests which would be made up of trees and represent the security boundary of an active directory.

As to how a Domain Controller affects network structure?? Again not sure what your asking.. Network structure is outside the hierarchy of a AD structure. Yes normally you would design your active directory around your current network structure. For placement of DCs and breakup of sites, etc. But your AD structure does not dictate your network structure -- but network structure might dictate placements of of your DCs

:blush:

Thanks Budman and yes, sorry to say, basic network knowledge is fine for me, but to be honest, those are kinda unknown to me. Sincerely thanks for your precious time replying with comprehensive points and questions that make me think and learn more.

I will try to sort all the questions that were put back to me one by one with my friend ~ Google. Thanks, hope the next time i come here again with different level of network knowledge :)

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Windoze 11 could finally go to hell, instead of making me savor yet another error I've never had. "Bad Pool Caller" or whatever TF cryptic crap0la message it is. Adding salt to injury, it says something along these lines (on the blank black screen after it hard stops): "Your windoze needs to restart. You can restart." NO WAY SHERLOCK. The PEECEE, look, it's *blocked*, I can do jack sh1t with it as it is and you say that it needs to restart? Further, that I can restart? What am I supposed to do, take a herbal bath? Sudo a sandwich? Timewaster pile of useless slop and errors, coded by monkeys and force-fed on us by a pedo-founded corporation, that's all there is to it. Now, let's have a fun weekend trying to handle the error, which after a quick internet check can basically be due to EVERYTHING, from memory faults to drivers to motherboard issues. Thanks M$.
    • Zen Browser 1.21.3b by Razvan Serea Zen Browser is a privacy-focused, open-source web browser built on Mozilla Firefox, offering users a secure and customizable browsing experience. It emphasizes privacy by blocking trackers, ads, and ensuring your data isn't collected. With Zen Mods, users can enhance their browser experience with various customization options, including features like split views and vertical tabs. The browser is designed for efficiency, providing fast browsing speeds and a lightweight interface. Zen Browser prioritizes user control over the browsing experience, offering a minimal yet powerful alternative to traditional web browsers while keeping your online activity private. Zen Browser’s DRM limitation Zen Browser currently lacks support for DRM-protected content, meaning streaming services like Netflix and HBO Max are inaccessible. This is due to the absence of a Widevine license, which requires significant costs and is financially unfeasible for the developer. Additionally, applying for this license would require Zen to be part of a larger company, similar to Mozilla or Brave. Therefore, DRM-protected media won't be supported in Zen Browser for the foreseeable future. Zen Browser offers features that improve user experience, privacy, and customization: Privacy-Focused: Blocks trackers and minimizes data collection. Automatic Updates: Keeps the browser updated with security patches. Zen Mods: Customizable themes and layouts. Workspaces: Organize tabs into different workspaces. Compact Mode: Maximizes screen space by minimizing UI elements. Zen Glance: Quick website previews. Split Views: View multiple tabs in the same window. Sidebar: Access bookmarks and tools quickly. Vertical Tabs: Manage tabs vertically. Container Tabs: Separate browsing sessions. Fast Profile Switcher: Switch between profiles easily. Tab Folders: Organize tabs into folders. Customizable UI: Personalize browser interface. Security Features: Inherits Firefox’s robust security. Fast Performance: Lightweight and optimized for speed. Zen Mods Customization: Deep customization with mods. Quick Access: Easy access to favorite websites. Open Source: Built on Mozilla Firefox with community collaboration. Community-Driven: Active development and feedback from users. GitHub Repository: Contribute and review the source code. Zen Browser 1.21.3b changelog: New Features Updated to Firefox 152.0.1 Fixes Fixed transparency not working after updating to 1.21.2b (#14259) Fixed frequent crashes affecting users with Intel Raptor Lake processors Fixed an issue on macOS where choosing a PDF option, such as "Save as PDF", from the system print dialog would send the job to your printer instead of saving a file. Other minor bug fixes and improvements. Download: Zen Browser | 90.2 MB (Open Source) Download: Zen Browser ARM64 | Other Operating Systems View: Zen Browser Home Page | Screenshots 1 | 2 | Reddit Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Get 1-year and $60 of Sam's Club value for just $15 with Auto-renew by Steven Parker Become a Sam's Club Member Now! Shop Premium-Quality Products and Enjoy Incredible Perks, and Savings. Today's highlighted deal comes via our Gift Cards section of the Neowin Deals store, where for only a limited time, you can save 75% off a Sam's Club 1 Year Membership with Auto-Renew. Sam’s Club is a membership warehouse club, a limited-item business model that offers members quality products at an exceptional value unmatched by traditional retail. From groceries and kitchen supplies to electronics and furniture, Sam's Club has great deals on the items you want! By redeeming and signing up as a member, you'll be paying just $20 for a 1 year Sam's Club membership (normally $50.) You'll receive a complimentary household card for more savings from already low-priced items. Sign up now and save money on all your food and decor. Find great deals on groceries, kitchen supplies, electronic, furniture & more Get discounts on hotels, rental car, live events, attractions, movies, & more Save up to 60% on hotel accommodations around the world Get a complimentary household card for more savings from already low-priced items Although it was published quite some time ago, Sam's Club members can enjoy discounts like this. Important Details For a physical membership card after online membership registration, present your phone number or email along with a valid ID at Sam’s Club Membership Services in any US Sam's Club location to have your membership card printed. This membership offer is only available to new Sam's Club members in the USA. It is not valid for membership renewals, for those with a current membership, or those who were Sam’s Club members less than 6 months prior to the current date. To check your renewal date, please check your billing statement or your online account, or chat with an associate. Promotion code is non-transferable Offer valid for new Sam’s Club members only; not valid for membership renewals, for those with a current membership, or those who were Sam’s Club members less than 6 months prior to the current date. Auto Renew: By accepting this offer, you authorize annual recurring charges to any card on file for your Sam's Club membership fee(s) plus any applicable taxes at then-current rate every year until you cancel. Current rates, which may change, are $50 for Club level and $110 for Plus level. Visit SamsClub.com or a club or call 1-888-746-7726 for full terms or to cancel auto-renewal. Valid at over 597 U.S. Sam’s Club locations. Find a location near you. Redemption deadline: redeem your code within 30 days of purchase Access options: desktop & mobile Membership MUST be activated within 30 days Membership expires 1 YEAR from the date the Sam's Club membership is activated Limit 1 per person, may buy 1 additional as gift This Sam's Club 1 Year Membership normally costs $60, but can now be yours for just $15, for a limited time, that's a saving of $45 (70%) off! For specifications, and terms, please click the link below. Get 1-year of Sam's Club with Auto-renew for just $15 (was $60) This deal is only available to U.S. residents. Support queries If you have queries or need support for any of the Neowin Deals, please use the contact form here. Neowin Deals are managed and sold by StackCommerce who represent Neowin on an affiliate basis. Why we post these deals We post these because we earn commission on each sale so as not to rely solely on advertising, which many of our readers block. It all helps toward paying staff reporters, servers and hosting costs. So for those that keep moaning and complaining, be thankful we're still online for you to even do that. Other ways to support Neowin Whitelist Neowin by not blocking our ads Create a free member account to see fewer ads Make a donation to support our day to day running costs Subscribe to Neowin - for $14 a year, or $28 a year for an ad-free experience Disclosure: Neowin benefits from revenue of each sale made through our branded deals site powered by StackCommerce.
    • Microsoft, why can't I just turn off Copilot on my MS account (in order to stop OneDrive from wanting to summarize everything, ahem) in a way that doesn't break OneNote instead?
  • Recent Achievements

    • Collaborator
      ryansurfer98 went up a rank
      Collaborator
    • Week One Done
      Eurosoft10 earned a badge
      Week One Done
    • One Month Later
      Eurosoft10 earned a badge
      One Month Later
    • One Year In
      Skeet Campbell earned a badge
      One Year In
    • One Month Later
      Sharbel earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      588
    2. 2
      +Edouard
      190
    3. 3
      PsYcHoKiLLa
      80
    4. 4
      Michael Scrip
      77
    5. 5
      Steven P.
      73
  • Tell a friend

    Love Neowin? Tell a friend!