About complex network architecture design and its term


Recommended Posts

Hi all,

I have few questions puzzling me for few weeks, hope someone can guide me through as the scenario below:

Background:

Enterprise terminal clients (PC/laptop) most likely will classify into Active Directory/Cluster/Domain, and they use site-to-site VPN connection many times, this would be easier to take care of. The overall network architecture is as below:

Center -> Local Branch AD/Cluster/Domain, joined by local system with different department object unit (OU) in the domain -> these users/clients will need to grant access into specify domain in the entire AD because they are categariezed into different department/team/group.

-> Different region may have many AD/Cluster/Domain, they sometime have trusted bridge connection or site-to-site VPN connection in order to fastern certain process that need time to travel all the way back to Center

Case 1:

If one of the client system is transferring from one outlet / branch to the other one, would it be fine if this client system removed from the old domain/AD? Would that impact the entire network structure?

Case 2:

If one of the server that has a site-to-site VPN connection / trusted bridge connection to another branch, and eventually they decided to brake up the 2, what is/are the impact and would this affect the connectivity from Center to both these branches (in term of server connection). How or what should have done to avoid this?

Queries:

My udnerstanding is in AD, there are many different type of domains that served different purpose. And every single system/server is consider as object unit (OU) and they would join to either one of the domain in the AD in order to share data.

If the enterprise is big enough, and the server/major system will brake into Cluster.

-> What is/are the differences of Active Directory and Domain?

-> They is a domain controller and how can this affect the entire network structure?

Thank you all.

Regards,

A Domain is a group of computing systems or services on a network based on DNS and are most likely to be under single Administrative Control. Where, computing Systems may include any computer that the organization have, and Computing Serivces may represent any network services that is made available with the support of DNS.

Microsoft Active Directory is a repository (think of it as a database) of AD objects (resources and security principles) stored or managed in a hierarchical structure (like a tree structure). AD objects can be organized and managed into AD with help of Sites, Forests, and Domains, OUs.

I will add more as I get time.

Wow I hope you aren't charging people for your time. I don't know where to begin with what's wrong with that.

I'll have a go anyway as much as I can be bothered . . .

If one of the client system is transferring from one outlet / branch to the other one, would it be fine if this client system removed from the old domain/AD? Would that impact the entire network structure?

How or what should have done to avoid this?

Intersite replication perhaps? A basic of AD. Read up on what a domain is first and not domain name. You really need to understand the basics

They is a domain controller and how can this affect the entire network structure?

Expand please, It wont affect your "Network Infastructure" It would affect your domain infastruture ALOT

My udnerstanding is in AD, there are many different type of domains that served different purpose. And every single system/server is consider as object unit (OU) and they would join to either one of the domain in the AD in order to share data.

If the enterprise is big enough, and the server/major system will brake into Cluster.

Again NO! It doesnt break into cluster automatically. Again I think you need to read up on Windows clustering. And No thats not what an OU is.

You have a lot to understand about Active Directory and Domains

Where did you get this from??

"Enterprise terminal clients (PC/laptop) most likely will classify into Active Directory/Cluster/Domain"

Is this something you wrote?? Or is it out of some book?? To be honest its pretty much gibberish..

"Local Branch AD/Cluster/Domain, joined by local system with different department object unit (OU) in the domain"

Again --- Where did this come from.. Its Gibberish as well.

"Case 1:

If one of the client system is transferring from one outlet / branch to the other one, would it be fine if this client system removed from the old domain/AD? Would that impact the entire network structure?"

How I'm reading this. Can you move a client system (Member PC) from one Active directory domain to another.. Yes this is not a problem never was, never will be.. What impact would it have on the network structure??? Um that would be ZERO, a client means nothing -- there can be hundreds to thousands of them, they have nothing to do with the network structure at all. Worse case is if there were other clients that need to talk to this client. But as far as AD goes clients (Member PCs) have nothing to do with anything.

Case 2?? have no idea what your talking about.. Sure you can have location to location network connections.. But without understanding your overall connection topology its impossible to say what impact if any it would have.. You have not laid out any sort of topology for network connectivity between locations, nor any sort of AD Hierarchy. Are these locations part of the same forest? Are their trusts between forests or domains? Are they child domains, etc.

"there are many different type of domains that served different purpose"

Serve different purposes?? I believe your talking about a Forest, or domain or a child domain - as to serving different purposes??? Not sure what your asking??

'If the enterprise is big enough, and the server/major system will brake into Cluster"

Again at loss to understand what your wanting to ask even? Yes if the need is there then you might want to cluster servers to provide for High Availability.. But this really has nothing to directly do with Active directory. Clustering is a way to provide for fail over or load balancing.

"> What is/are the differences of Active Directory and Domain?"

Again are you confusing the term domain as used within active directory with general DNS (Domain Naming System) as used on the internet for example neowin.net is a domain?

A domain in active directory refers to all objects in a common database, now you never even mention Trees which would be either a single domain, or domain and its children -- ie all domains that fall under the same namespace. And you also make no mention of Forests which would be made up of trees and represent the security boundary of an active directory.

As to how a Domain Controller affects network structure?? Again not sure what your asking.. Network structure is outside the hierarchy of a AD structure. Yes normally you would design your active directory around your current network structure. For placement of DCs and breakup of sites, etc. But your AD structure does not dictate your network structure -- but network structure might dictate placements of of your DCs

Its not always about what the OP understands, but who else might read the thread and pickup some info, etc. ;)

Exactly! I love reading over various networking threads, especially those you have commented on. Not sure if I'll ever be a system admin, but I'm studying management information systems right now so I'm familiar (not an expert) in most of the information being discussed. With this topic, I definitely learned more about AD's. :p

Where did you get this from??

"Enterprise terminal clients (PC/laptop) most likely will classify into Active Directory/Cluster/Domain"

Is this something you wrote?? Or is it out of some book?? To be honest its pretty much gibberish..

"Local Branch AD/Cluster/Domain, joined by local system with different department object unit (OU) in the domain"

Again --- Where did this come from.. Its Gibberish as well.

"Case 1:

If one of the client system is transferring from one outlet / branch to the other one, would it be fine if this client system removed from the old domain/AD? Would that impact the entire network structure?"

How I'm reading this. Can you move a client system (Member PC) from one Active directory domain to another.. Yes this is not a problem never was, never will be.. What impact would it have on the network structure??? Um that would be ZERO, a client means nothing -- there can be hundreds to thousands of them, they have nothing to do with the network structure at all. Worse case is if there were other clients that need to talk to this client. But as far as AD goes clients (Member PCs) have nothing to do with anything.

Case 2?? have no idea what your talking about.. Sure you can have location to location network connections.. But without understanding your overall connection topology its impossible to say what impact if any it would have.. You have not laid out any sort of topology for network connectivity between locations, nor any sort of AD Hierarchy. Are these locations part of the same forest? Are their trusts between forests or domains? Are they child domains, etc.

"there are many different type of domains that served different purpose"

Serve different purposes?? I believe your talking about a Forest, or domain or a child domain - as to serving different purposes??? Not sure what your asking??

'If the enterprise is big enough, and the server/major system will brake into Cluster"

Again at loss to understand what your wanting to ask even? Yes if the need is there then you might want to cluster servers to provide for High Availability.. But this really has nothing to directly do with Active directory. Clustering is a way to provide for fail over or load balancing.

"> What is/are the differences of Active Directory and Domain?"

Again are you confusing the term domain as used within active directory with general DNS (Domain Naming System) as used on the internet for example neowin.net is a domain?

A domain in active directory refers to all objects in a common database, now you never even mention Trees which would be either a single domain, or domain and its children -- ie all domains that fall under the same namespace. And you also make no mention of Forests which would be made up of trees and represent the security boundary of an active directory.

As to how a Domain Controller affects network structure?? Again not sure what your asking.. Network structure is outside the hierarchy of a AD structure. Yes normally you would design your active directory around your current network structure. For placement of DCs and breakup of sites, etc. But your AD structure does not dictate your network structure -- but network structure might dictate placements of of your DCs

:blush:

Thanks Budman and yes, sorry to say, basic network knowledge is fine for me, but to be honest, those are kinda unknown to me. Sincerely thanks for your precious time replying with comprehensive points and questions that make me think and learn more.

I will try to sort all the questions that were put back to me one by one with my friend ~ Google. Thanks, hope the next time i come here again with different level of network knowledge :)

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Same Internet Archive seemed to grab the new version https://web.archive.org/web/20...d/Setup_MakeMKV_v1.18.4.exe Here's the link to an additional file it periodically downloads https://web.archive.org/web/20260213092148/https://www.makemkv.com/sdf.bin I think update's keys, etc. To manually trigger this update, put the sdf.bin file in the root of where the program is installed. When you launch the program it will pick up the file and import it. Typically put it here: C:\Program Files (x86)\MakeMKV\sdf.bin
    • Windows 11 KB5094126, KB5093998 bugging out Office apps but it may not be Microsoft's fault by Sayan Sen Microsoft last week released Windows 11 KB5094126 and KB5093998 as the latest Patch Tuesday updates. Following that the company also published the accompanying dynamic updates under KB5094149, KB5095971, and KB5094156. Although the tech giant did not acknowledge any major problems, some users online reported various issues ranging from OneDrive and Dropbox access problems, BitLocker recovery lockouts, to blue screens and BSODs. You can read about them in this dedicated piece. While there is still no confirmation about those problems from Microsoft the company has admitted to another bug which we did not report on. The tech giant has confirmed it has received reports of an issue in which certain third-party applications may be unable to launch Microsoft Office apps or open Office documents after installing the Patch Tuesday. This affects both Windows 11 as well as Windows 10. The company says the problem impacts a subset of applications that rely on OLE (Object Linking and Embedding) automation to communicate with Microsoft Office programs. According to Microsoft, affected scenarios involve third-party software attempting to open Office applications or documents from within their own interface. In such cases, the Office program may fail to launch altogether, or the requested document may not open. Oddly there may not be any error message, which probably makes the issue difficult to diagnose. The bug affects several Office products, including Word, Excel, PowerPoint, Access, and other apps in the Microsoft Office suite when they are launched through the affected software. These include tax and accounting software such as CCH Engagement and Workpaper Manager, dental practice management solutions like Dentrix and Softdent, as well as the popular research and reference management tool Zotero. Microsoft adds that other applications using similar Office integration methods could also experience the same problematic behavior. To understand the issue it is important to look at OLE, the Microsoft technology involved. OLE allows different applications to work together and share data, while its Automation feature lets one program control another. Thus this enables third-party software to launch Microsoft Office apps, open documents, and perform tasks automatically without requiring users to switch between programs. Because many accounting, healthcare, research, and business applications rely on OLE automation to interact with Word, Excel, PowerPoint, and other Office apps, any disruption can break those workflows. As a result, affected software may be unable to open Office documents or launch Office applications even though the programs themselves continue to work normally. At the moment the company has not provided a permanent fix though it has confirmed that engineers are actively working on a resolution, which will be delivered through a future Windows update. As such additional details will be shared once more information becomes available. In the meantime, Microsoft recommends a simple workaround for affected users whic is to open the Office application or document directly rather than launching it through the third-party program. For enterprise customers and organizations managing larger deployments, Microsoft says an additional mitigation is available. Admins experiencing the problem on their managed devices are advised to contact Microsoft Support for business to obtain and apply the workaround.
    • It saddens me when cars are such dull colours now. Mine is bright metallic blue and I absolutely adore it for standing out in contrast to that depressing backdrop of traffic.
    • Sparkle 2.20.0 by Razvan Serea Sparkle is a free, open-source Windows optimization tool designed to make your PC faster, cleaner, and more private. With Sparkle, you can easily debloat Windows by removing unnecessary apps and services, disable Microsoft tracking to enhance privacy, and apply performance tweaks to boost speed. Its cleaner removes junk and temporary files, while every change is safe and fully reversible. Sparkle also features a modern, user-friendly interface with automatic updates, making system maintenance simple. Explore over 39 tweaks, from disabling telemetry and hibernation to optimizing network and game settings, all aimed at customizing and enhancing your Windows experience. Sparkle supports Windows 10 and 11. Sparkle 2.20.0 changelog: Debloat Tweak has animated border New homepage loading UI New Tweak Modal (Markdown Supported) Refactored GPU Detection Added Tests with vitest Added foobar2000 to apps Added Localsend to apps Updated Modal Styles Added styles for disabled inputs Added Animated Border to debloat-windows tweak Bumped dependencies Refactor System info logic for speed Tweak info modals now support Markdown Added Clear System info cache to settings Redesigned Home Page Loading UI Changed Some Icons around the app Download: Sparkle 2.20.0 | Portable | ~100.0 MB (Open Source) Links: Sparkle Website | Github | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • lol it was a typo, fixed! haha imagine an actual 4TB Gen4 NVMe for $40 in 2026
  • Recent Achievements

    • Reacting Well
      Dys Topia earned a badge
      Reacting Well
    • Conversation Starter
      NovaEdgeX earned a badge
      Conversation Starter
    • One Year In
      Console General earned a badge
      One Year In
    • Week One Done
      Twozo Technologies earned a badge
      Week One Done
    • One Month Later
      Twozo Technologies earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      517
    2. 2
      +Edouard
      184
    3. 3
      PsYcHoKiLLa
      106
    4. 4
      Steven P.
      88
    5. 5
      ATLien_0
      68
  • Tell a friend

    Love Neowin? Tell a friend!