- Thread Author
- #1
Hi all,
First let me start with what I'm trying to accomplish:
- My DC will also be a file server for sharing company documents and individual staff members will have their own personal drives (e.g. L: for Staff Files, M: for Company Files).
- Be able to successfully ping DC/File server using hostname both from client computers to server and server to client client computers.
- Be able to pull group policies into all client computers.
- Be able to add additional client computers in the future with no issues joining to Domain due to DNS.
I'm having a dilemma with the following:
- I have added ADDS & DNS on my Server 2016 box.
- I have created 2 security groups (Staff and Company Admins)
- Under the DC I have created 1 OU with 4 sub OU's example below:
- ABC_Company
- Admins OU -> Contains Admin security group
- Staff OU -> Contains Staff security group
- Computers -> Contains few client computers that I've joined to domain
- Users -> Contains individual AD staff and admin accounts
- I have created a GPO under ABC_Company OU that maps the drives to OU's - Staff and Admins
The situation:
My gpupdate /force isn't working due to DNS issues. I've configured DNS on my server with forward/reverse lookup zones with A-Records for my client computers. I had to put the static DNS IP of the DC on the client computers (NICs) in order to join domain, as well as add a HOSTS file entry both on the server and client computers to be able to join them to the domain, otherwise it would fail. I'm desperate to understand where the config fell through or is it something that I missed. I've provided several screenshots that might explain my situation.
My network admin has Ubiquiti Unifi Secure Gateway installed and he swears that there's no filtering or blocking on my VLAN.
First let me start with what I'm trying to accomplish:
- My DC will also be a file server for sharing company documents and individual staff members will have their own personal drives (e.g. L: for Staff Files, M: for Company Files).
- Be able to successfully ping DC/File server using hostname both from client computers to server and server to client client computers.
- Be able to pull group policies into all client computers.
- Be able to add additional client computers in the future with no issues joining to Domain due to DNS.
I'm having a dilemma with the following:
- I have added ADDS & DNS on my Server 2016 box.
- I have created 2 security groups (Staff and Company Admins)
- Under the DC I have created 1 OU with 4 sub OU's example below:
- ABC_Company
- Admins OU -> Contains Admin security group
- Staff OU -> Contains Staff security group
- Computers -> Contains few client computers that I've joined to domain
- Users -> Contains individual AD staff and admin accounts
- I have created a GPO under ABC_Company OU that maps the drives to OU's - Staff and Admins
The situation:
My gpupdate /force isn't working due to DNS issues. I've configured DNS on my server with forward/reverse lookup zones with A-Records for my client computers. I had to put the static DNS IP of the DC on the client computers (NICs) in order to join domain, as well as add a HOSTS file entry both on the server and client computers to be able to join them to the domain, otherwise it would fail. I'm desperate to understand where the config fell through or is it something that I missed. I've provided several screenshots that might explain my situation.
My network admin has Ubiquiti Unifi Secure Gateway installed and he swears that there's no filtering or blocking on my VLAN.
Attachments
-
Annotation 2019-11-24 014222.webp164 KB · Views: 125
-
Annotation 2019-11-24 013933.webp65.2 KB · Views: 125
-
Annotation 2019-11-24 013818.webp29.8 KB · Views: 137
-
Annotation 2019-11-24 013724.webp71.5 KB · Views: 120
-
Annotation 2019-11-24 013548.webp24.5 KB · Views: 149
-
Annotation 2019-11-24 013423.webp67.5 KB · Views: 135
-
Annotation 2019-11-24 013058.webp22.5 KB · Views: 125
-
Annotation 2019-11-24 012101.webp72.6 KB · Views: 136
Last edited: