Wednesday, April 4, 2012

Active Directory FSMOs

Flexibility Schema Operations Master (FSMOs)

Forest Roles:
1. Schema Master- Creation or Changes to AD objects are handled by a Single Domain controller holding the Schema Master role and then replicated to other DCs. 

2. Domain Naming Master- Role responsible for ensuring unique Domain Controller name. 

Domain Roles:

3. Infrastructure Master- Role responsible for checking for changes made to AD objects by comparing against the global catalog.  Changes are then replicated to other DCs. 

-NOTE-
Unless there is only one domain controller in the domain, the infrastructure master role should not be assigned to the domain controller that is hosting the global catalog. If the infrastructure master and global catalog are on the same domain controller, the infrastructure master will not function. The infrastructure master will never find data that is out of date, so it will never replicate any changes to the other domain controllers in the domain.

In the case where all of the domain controllers in a domain are also hosting the global catalog, all of the domain controllers will have the current data and it does not matter which domain controller holds the infrastructure master role.

4. RID Master- Responsible for ensuring Unique SID assignment. 

5. PDC emulator master- processes password changes from client computers and replicates these updates to all domain controllers throughout the domain. At any time, there can be only one domain controller acting as the PDC emulator master in each domain in the forest.






No comments:

Post a Comment