
<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>RODC Windows Server 2016 Archives - TECHNIG</title>
	<atom:link href="https://www.technig.com/tag/rodc-windows-server-2016/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.technig.com/tag/rodc-windows-server-2016/</link>
	<description>Gateway for IT Experts and Tech Geeks</description>
	<lastBuildDate>Thu, 26 Nov 2015 15:44:59 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.6.2</generator>

<image>
	<url>https://www.technig.com/wp-content/uploads/2020/04/32x32.png</url>
	<title>RODC Windows Server 2016 Archives - TECHNIG</title>
	<link>https://www.technig.com/tag/rodc-windows-server-2016/</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">162720667</site>	<item>
		<title>Deploy Read-Only Domain Controller (RODC) on Server 2016</title>
		<link>https://www.technig.com/deploy-read-only-domain-controller-windows-server-2016/</link>
					<comments>https://www.technig.com/deploy-read-only-domain-controller-windows-server-2016/#comments</comments>
		
		<dc:creator><![CDATA[Shais]]></dc:creator>
		<pubDate>Thu, 26 Nov 2015 15:44:59 +0000</pubDate>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[MCSA]]></category>
		<category><![CDATA[Servers]]></category>
		<category><![CDATA[How to]]></category>
		<category><![CDATA[Install and Configure]]></category>
		<category><![CDATA[RODC Windows Server 2016]]></category>
		<guid isPermaLink="false">https://www.technig.com/?p=4419</guid>

					<description><![CDATA[<div style="margin-bottom:20px;"><img width="780" height="445" src="https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller1.jpg" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="Deploy Read-Only Domain Controller" decoding="async" fetchpriority="high" srcset="https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller1.jpg 780w, https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller1-300x171.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller1-768x438.jpg 768w" sizes="(max-width: 780px) 100vw, 780px" /></div>
<p>In this article we are going to deploy read-only domain controller (RODC) in Windows Server 2016. Read only-domain controller is a type of domain controller in Windows Server operating system. With an RODC, organizations can easily deploy a domain controller in locations where physical security cannot be guaranteed. An RODC hosts read-only partitions of the [&#8230;]</p>
<p>The post <a href="https://www.technig.com/deploy-read-only-domain-controller-windows-server-2016/">Deploy Read-Only Domain Controller (RODC) on Server 2016</a> appeared first on <a href="https://www.technig.com">TECHNIG</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div style="margin-bottom:20px;"><img width="780" height="445" src="https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller1.jpg" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="Deploy Read-Only Domain Controller" decoding="async" loading="lazy" srcset="https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller1.jpg 780w, https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller1-300x171.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller1-768x438.jpg 768w" sizes="(max-width: 780px) 100vw, 780px" /></div><p>In this article we are going to deploy read-only domain controller (RODC) in Windows Server 2016. Read only-domain controller is a type of domain controller in Windows Server operating system. With an RODC, organizations can easily deploy a domain controller in locations where physical security cannot be guaranteed. An RODC hosts read-only partitions of the Active Directory® Domain Services (AD DS) database.</p>
<p>An RODC provides a way to deploy a domain controller more securely in locations that require fast and reliable authentication services but cannot ensure physical security for a writable domain controller. Read more about <a href="https://technet.microsoft.com/en-us/library/cc732801(v=ws.10).aspx" target="_blank" rel="noopener noreferrer">what does an RODC do</a> as domain controller.</p>
<h2>How to Deploy Read-Only Domain Controller?</h2>
<p>To deploy read-only domain controller in a Windows server, you need to have required  permission. An domain admin account can deploy RODC. In this practical lab I&#8217;m using Hyper-V with two Windows Serve 2016 installed. The first server DC16 is the main domain controller and the second one will be used to deploy read-only domain controller.</p>
<p><strong>1.</strong>  Before you start to deploy <strong>RODC</strong> on second server, configure network card of second serve with a static IP address and join serve to domain.</p>
<ul style="list-style-type: circle;">
<li><a href="https://www.technig.com/configure-windows-ipv4-networking-with-netsh/" target="_blank" rel="noopener noreferrer">Configure Windows IPv4 Networking with Netsh</a></li>
</ul>
<p><strong>2.</strong> Now open<strong> Server Manager</strong> and click <strong>Manage</strong>, select <strong>Add Roles and Features</strong>. On before you begin click <strong>Next</strong> then select<strong> Role-based or feature-based installation</strong> and click<strong> Next. </strong></p>
<figure id="attachment_4422" aria-describedby="caption-attachment-4422" style="width: 787px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/Windows-Server-2016-Server-Manager.jpg"><img decoding="async" class="size-full wp-image-4422" src="http://3.90.216.52/wp-content/uploads/2015/11/Windows-Server-2016-Server-Manager.jpg" alt="Windows Server 2016 Server Manager" width="787" height="263" srcset="https://www.technig.com/wp-content/uploads/2015/11/Windows-Server-2016-Server-Manager.jpg 787w, https://www.technig.com/wp-content/uploads/2015/11/Windows-Server-2016-Server-Manager-300x100.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/Windows-Server-2016-Server-Manager-768x257.jpg 768w" sizes="(max-width: 787px) 100vw, 787px" /></a><figcaption id="caption-attachment-4422" class="wp-caption-text">Windows Server 2016 Server Manager</figcaption></figure>
<p><strong>3.</strong> On <strong>Select destination server</strong> page, select your RODC server and click <strong>Next</strong>.</p>
<figure id="attachment_4423" aria-describedby="caption-attachment-4423" style="width: 788px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller.jpg"><img decoding="async" class="wp-image-4423 size-full" src="http://3.90.216.52/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller.jpg" alt="Deploy Read-Only Domain Controller" width="788" height="339" srcset="https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller.jpg 788w, https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller-300x129.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/Deploy-Read-Only-Domain-Controller-768x330.jpg 768w" sizes="(max-width: 788px) 100vw, 788px" /></a><figcaption id="caption-attachment-4423" class="wp-caption-text">Deploy Read-Only Domain Controller</figcaption></figure>
<p><strong>4.</strong> Select <strong>Active Directory Domain Services</strong>, then on the prompt window click <strong>Add Features</strong>. This will add  features that are required for active directory domain services, then click <strong>Next</strong>.</p>
<figure id="attachment_4424" aria-describedby="caption-attachment-4424" style="width: 849px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/Add-features-that-are-required-for-active-directory-domain-services.jpg"><img loading="lazy" decoding="async" class="size-full wp-image-4424" src="http://3.90.216.52/wp-content/uploads/2015/11/Add-features-that-are-required-for-active-directory-domain-services.jpg" alt="Add features that are required for active directory domain services" width="849" height="461" srcset="https://www.technig.com/wp-content/uploads/2015/11/Add-features-that-are-required-for-active-directory-domain-services.jpg 849w, https://www.technig.com/wp-content/uploads/2015/11/Add-features-that-are-required-for-active-directory-domain-services-300x163.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/Add-features-that-are-required-for-active-directory-domain-services-768x417.jpg 768w" sizes="(max-width: 849px) 100vw, 849px" /></a><figcaption id="caption-attachment-4424" class="wp-caption-text">Add features that are required for active directory domain services</figcaption></figure>
<p><strong>5.</strong> Just click <strong>Next</strong>, do noting on <strong>Features</strong>, <strong>AD DS</strong> pages. Finally click Install on <strong>Confirmation</strong> page.</p>
<figure id="attachment_4426" aria-describedby="caption-attachment-4426" style="width: 787px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/Install-Read-Only-Domain-Controller-on-Windows-Server-2016.jpg"><img loading="lazy" decoding="async" class="size-full wp-image-4426" src="http://3.90.216.52/wp-content/uploads/2015/11/Install-Read-Only-Domain-Controller-on-Windows-Server-2016.jpg" alt="Install Read Only Domain Controller on Windows Server 2016" width="787" height="561" srcset="https://www.technig.com/wp-content/uploads/2015/11/Install-Read-Only-Domain-Controller-on-Windows-Server-2016.jpg 787w, https://www.technig.com/wp-content/uploads/2015/11/Install-Read-Only-Domain-Controller-on-Windows-Server-2016-300x214.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/Install-Read-Only-Domain-Controller-on-Windows-Server-2016-768x547.jpg 768w" sizes="(max-width: 787px) 100vw, 787px" /></a><figcaption id="caption-attachment-4426" class="wp-caption-text">Install Read Only Domain Controller on Windows Server 2016</figcaption></figure>
<p><strong>6.</strong> Let the <strong>Active Directory Domain Services</strong> installation process will be finished successfully. When it has  finished click <strong>Promote this serve to a domain controller</strong> link.</p>
<figure id="attachment_4428" aria-describedby="caption-attachment-4428" style="width: 793px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/Promote-this-serve-to-a-domain-controller.jpg"><img loading="lazy" decoding="async" class="size-full wp-image-4428" src="http://3.90.216.52/wp-content/uploads/2015/11/Promote-this-serve-to-a-domain-controller.jpg" alt="Promote this serve to a domain controller" width="793" height="384" srcset="https://www.technig.com/wp-content/uploads/2015/11/Promote-this-serve-to-a-domain-controller.jpg 793w, https://www.technig.com/wp-content/uploads/2015/11/Promote-this-serve-to-a-domain-controller-300x145.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/Promote-this-serve-to-a-domain-controller-768x372.jpg 768w" sizes="(max-width: 793px) 100vw, 793px" /></a><figcaption id="caption-attachment-4428" class="wp-caption-text">Promote this serve to a domain controller</figcaption></figure>
<p><strong>7.</strong> Now, on the <strong>Deployment Configuration</strong> page, select <strong>Add a domain controller to an existing domain</strong> then type your current domain name to Domain text box, then click <strong>Next</strong>.</p>
<figure id="attachment_4429" aria-describedby="caption-attachment-4429" style="width: 765px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/RODC-Deployment-Configuration.jpg"><img loading="lazy" decoding="async" class="size-full wp-image-4429" src="http://3.90.216.52/wp-content/uploads/2015/11/RODC-Deployment-Configuration.jpg" alt="RODC Deployment Configuration" width="765" height="358" srcset="https://www.technig.com/wp-content/uploads/2015/11/RODC-Deployment-Configuration.jpg 765w, https://www.technig.com/wp-content/uploads/2015/11/RODC-Deployment-Configuration-300x140.jpg 300w" sizes="(max-width: 765px) 100vw, 765px" /></a><figcaption id="caption-attachment-4429" class="wp-caption-text">RODC Deployment Configuration</figcaption></figure>
<p><strong>8.</strong> On the <strong>Domain Controller Options</strong> page, select <strong>Read only domain controller (RODC)</strong> and type a password then click <strong>Next</strong>.</p>
<figure id="attachment_4430" aria-describedby="caption-attachment-4430" style="width: 767px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/RODC-Options.jpg"><img loading="lazy" decoding="async" class="size-full wp-image-4430" src="http://3.90.216.52/wp-content/uploads/2015/11/RODC-Options.jpg" alt="RODC Options" width="767" height="311" srcset="https://www.technig.com/wp-content/uploads/2015/11/RODC-Options.jpg 767w, https://www.technig.com/wp-content/uploads/2015/11/RODC-Options-300x122.jpg 300w" sizes="(max-width: 767px) 100vw, 767px" /></a><figcaption id="caption-attachment-4430" class="wp-caption-text">RODC Options</figcaption></figure>
<p><strong>8.</strong> Currently I don&#8217;t add any groups to denied or allowed RODC. Only click <strong>Next.</strong></p>
<figure id="attachment_4431" aria-describedby="caption-attachment-4431" style="width: 765px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/Delegation-Administrator-Account-for-RODC.jpg"><img loading="lazy" decoding="async" class="size-full wp-image-4431" src="http://3.90.216.52/wp-content/uploads/2015/11/Delegation-Administrator-Account-for-RODC.jpg" alt="Delegation Administrator Account for RODC" width="765" height="563" srcset="https://www.technig.com/wp-content/uploads/2015/11/Delegation-Administrator-Account-for-RODC.jpg 765w, https://www.technig.com/wp-content/uploads/2015/11/Delegation-Administrator-Account-for-RODC-300x221.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/Delegation-Administrator-Account-for-RODC-86x64.jpg 86w" sizes="(max-width: 765px) 100vw, 765px" /></a><figcaption id="caption-attachment-4431" class="wp-caption-text">Delegation Administrator Account for RODC</figcaption></figure>
<p><strong>9.</strong> Select the primary domain, where the RODC want to replicate and will get it&#8217;s files for creating read only domain controller. Just click <strong>Next</strong>.</p>
<figure id="attachment_4432" aria-describedby="caption-attachment-4432" style="width: 769px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/Specifgy-Installation-options.jpg"><img loading="lazy" decoding="async" class="size-full wp-image-4432" src="http://3.90.216.52/wp-content/uploads/2015/11/Specifgy-Installation-options.jpg" alt="Specifgy Installation options" width="769" height="259" srcset="https://www.technig.com/wp-content/uploads/2015/11/Specifgy-Installation-options.jpg 769w, https://www.technig.com/wp-content/uploads/2015/11/Specifgy-Installation-options-300x101.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/Specifgy-Installation-options-768x259.jpg 768w" sizes="(max-width: 769px) 100vw, 769px" /></a><figcaption id="caption-attachment-4432" class="wp-caption-text">Specifgy Installation options</figcaption></figure>
<p><strong>10.</strong> Only click <strong>Next</strong> on the <strong>Paths</strong>, <strong>Preparation</strong> <strong>Option</strong>, and <strong>Review</strong> pages. Finally on <strong>Prerequisites Check</strong> click <strong>Install</strong> to begin the installation.</p>
<figure id="attachment_4433" aria-describedby="caption-attachment-4433" style="width: 764px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/All-prerequisite-check-passed-successfully.jpg"><img loading="lazy" decoding="async" class="size-full wp-image-4433" src="http://3.90.216.52/wp-content/uploads/2015/11/All-prerequisite-check-passed-successfully.jpg" alt="All prerequisite check passed successfully" width="764" height="562" srcset="https://www.technig.com/wp-content/uploads/2015/11/All-prerequisite-check-passed-successfully.jpg 764w, https://www.technig.com/wp-content/uploads/2015/11/All-prerequisite-check-passed-successfully-300x221.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/All-prerequisite-check-passed-successfully-86x64.jpg 86w" sizes="(max-width: 764px) 100vw, 764px" /></a><figcaption id="caption-attachment-4433" class="wp-caption-text">All prerequisite check passed successfully</figcaption></figure>
<p><strong>11.</strong> System will restart after completing installation. After rebooting the system, login to RODC and see the read only domain controller.</p>
<p><strong>12.</strong> Open <strong>Active Directory Users and Computers</strong>, navigate to <strong>Users</strong> OU see the members of <strong>Denied RODC Password Replication Group</strong>. The members of this group will not replicate with RODC, instead replicate directly with primary domain controller.</p>
<figure id="attachment_4435" aria-describedby="caption-attachment-4435" style="width: 893px" class="wp-caption aligncenter"><a href="http://3.90.216.52/wp-content/uploads/2015/11/Denied-RODC-Password-Replication-Groups.jpg"><img loading="lazy" decoding="async" class="size-full wp-image-4435" src="http://3.90.216.52/wp-content/uploads/2015/11/Denied-RODC-Password-Replication-Groups.jpg" alt="Denied RODC Password Replication Groups" width="893" height="535" srcset="https://www.technig.com/wp-content/uploads/2015/11/Denied-RODC-Password-Replication-Groups.jpg 893w, https://www.technig.com/wp-content/uploads/2015/11/Denied-RODC-Password-Replication-Groups-300x180.jpg 300w, https://www.technig.com/wp-content/uploads/2015/11/Denied-RODC-Password-Replication-Groups-768x460.jpg 768w" sizes="(max-width: 893px) 100vw, 893px" /></a><figcaption id="caption-attachment-4435" class="wp-caption-text">Denied RODC Password Replication Groups</figcaption></figure>
<p>The process has been finished, everything should work perfect. If you get any issue with deploying RODC, comment us please.</p>
<p>The post <a href="https://www.technig.com/deploy-read-only-domain-controller-windows-server-2016/">Deploy Read-Only Domain Controller (RODC) on Server 2016</a> appeared first on <a href="https://www.technig.com">TECHNIG</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://www.technig.com/deploy-read-only-domain-controller-windows-server-2016/feed/</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4419</post-id>	</item>
	</channel>
</rss>
