-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Hello, I like to know what will happend if: - - one Domain with 2 DCs - - two Admins working on their Windows-ws with RSAT. - - Admin1 is connected to DC1 - - Admin2 is connected to DC2 - - Admin1 creats a user "u1" and a group "g1" - - then the two DCs will lose connection, the user and group is replicated to DC2 - - now Admin1 makes "u1" a member of "g1" - - and Admin2 creats a group "g2" - - Admin2 makes "u1" a member of "g2" - - Admin2 now deletes group "g1" because for him the group is empty - - NOW the connection between the two DCs is coming back online. Now my question. What will be the status of "u1", "g1" and "g2" I hope the database will be still in sync :-) Regards Stefan -----BEGIN PGP SIGNATURE----- Version: GnuPG/MacGPG2 v2.0.16 (Darwin) iEYEARECAAYFAlRriokACgkQ2JOGcNAHDTY5aQCgyOPNjji8B3zTX3Ut/c4G0tby EUsAoN9PGsL7opkR6wQQKV9TsIAQTeoh =7ePw -----END PGP SIGNATURE-----
On 18/11/14 18:06, Stefan Kania wrote:> -----BEGIN PGP SIGNED MESSAGE----- > Hash: SHA1 > > Hello, > > I like to know what will happend if: > - - one Domain with 2 DCs > - - two Admins working on their Windows-ws with RSAT. > - - Admin1 is connected to DC1 > - - Admin2 is connected to DC2 > - - Admin1 creats a user "u1" and a group "g1" > - - then the two DCs will lose connection, the user and group is > replicated to DC2 > > - - now Admin1 makes "u1" a member of "g1" > - - and Admin2 creats a group "g2" > - - Admin2 makes "u1" a member of "g2" > - - Admin2 now deletes group "g1" because for him the group is empty > - - NOW the connection between the two DCs is coming back online. > > Now my question. What will be the status of "u1", "g1" and "g2" > > I hope the database will be still in sync :-) > > Regards > > Stefan > > > -----BEGIN PGP SIGNATURE----- > Version: GnuPG/MacGPG2 v2.0.16 (Darwin) > > iEYEARECAAYFAlRriokACgkQ2JOGcNAHDTY5aQCgyOPNjji8B3zTX3Ut/c4G0tby > EUsAoN9PGsL7opkR6wQQKV9TsIAQTeoh > =7ePw > -----END PGP SIGNATURE-----No idea really but I think that "g2" will replicate to DC1, replication will try to delete "g1" on DC1 and fail because it has a member. DC1 will replicate "g1" and its member to DC2. It will end with "u1", "g1" and "g2" existing on both servers. Rowland
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Hello Stefan, Am 18.11.2014 um 19:06 schrieb Stefan Kania:> I like to know what will happend if: - one Domain with 2 DCs - two > Admins working on their Windows-ws with RSAT. - Admin1 is > connected to DC1 - Admin2 is connected to DC2 - Admin1 creats a > user "u1" and a group "g1" - then the two DCs will lose connection, > the user and group is replicated to DC2 > > - now Admin1 makes "u1" a member of "g1" - and Admin2 creats a > group "g2" - Admin2 makes "u1" a member of "g2" - Admin2 now > deletes group "g1" because for him the group is empty - NOW the > connection between the two DCs is coming back online. > > Now my question. What will be the status of "u1", "g1" and "g2" > > I hope the database will be still in sync :-)In sync yes. The keyword is "USN" (update sequence number). See, e. g.: http://technet.microsoft.com/en-us/library/cc961798.aspx http://blogs.msmvps.com/acefekay/category/usn-active-directory-replication/ http://www.comptechdoc.org/os/windows/win2k/win2kadrepl.html Regards, Marc -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQEcBAEBAgAGBQJUa7HcAAoJEFNERvHO3m51c3EIAJ0mzB/1rrOTcClH1X6UR1Zu n0XCjcVUh7HeFENoUpZ9yVzbxzKJwsa1Dhs0x447tQ/dUx/zl3wtAXGMlMyhKeAx y6McXQF1OK8PMVHBOFKnPRcbKdnScDzAteHndhC1xFCvPUBreWYuLwF9oZ8IpxJk 5j6vLqJYAdBcSsKY6p8B+5jxIW6XA6MzF/26DwlnTP2mOUu+HRAcLUk8MXv1uvNX I7hdbEhnfElq/r8cNCpYm9A9qio7M3vT4P2HlMzcVkVJHK2fSL0+pepOKhHV9XMS m73+WbkGkUadfb1fVZq/VvAqxIg0kcIu5W7SewqxQUqhlGpntJLrEleJzxDy5QQ=Q8y2 -----END PGP SIGNATURE-----