Two Forests using Same Subnets?

We've setup a new 2012 R2 forest that we plan to migrate our 2008 R2 resources to over time. Currently it is on our production network, on the same ip ranges as our production forest.
I've suggested that we really should put the new domain on new, different subnets so that we don't have any issues with AD sites, replication, authentication or our AD site-enabled applications such as SCCM 2012. Not to mention DHCP.
Has anyone been able to stand up a forest using the same subnets / Sites for two different forests? My thoughts are that it can't (shouldn't) be done.
Orange County District Attorney

DHCP is a major factor that I see, since you can't share two different DHCPs on the same subnet trying to give out different DNS addresses and other scope/server options.
I agree with the others that it's better to separate the two prior to initiating a migration, no matter how small or large, to eliminate any possibility of issues occurring during the migration.
Ace Fekay
MVP, MCT, MCSE 2012, MCITP EA & MCTS Windows 2008/R2, Exchange 2013, 2010 EA & 2007, MCSE & MCSA 2003/2000, MCSA Messaging 2003
Microsoft Certified Trainer
Microsoft MVP - Directory Services
Complete List of Technical Blogs: http://www.delawarecountycomputerconsulting.com/technicalblogs.php
This posting is provided AS-IS with no warranties or guarantees and confers no rights.

Similar Messages

  • Cannot get Telnet to work between two servers on same subnet

    I need to test if communication is open on port 8444 between two servers.
    I installed telnet client on a Server 2008 R2 server and telnet server on a Server 2008 SP2 server.  I also manually started the Telnet service that was set to disabled on the SP2 server.  I disabled the Windows firewall on both servers.  They
    are both on the same subnet so they don't need to go through any routers and I can ping successfully.
    When I try to telnet to the remote server by typing telnet "ip address" 8444, I get an error that says "Could not open connection to host, on port 8444:  Connection failed.
    I tried other ports like port 80 and got the same error.
    What else is needed to get this to work?

    VMs have nothing to do with it, as long as there's network communication between the servers.
    As I said, there must be a service or application listening on that port for it to respond. For example, try this:
    C:\> telnet
    When the telnet prompt opens, type in:
    open mail.messaging.microsoft.com 25
    If it works, you should see this:
    220 CH1EHSMHS035.bigfish.com Microsoft ESMTP MAIL Service ready at Thu, 7 Feb 2013 00:57:33 +0000
    That means that Microsoft's mail servers are LISTENING on port 25 and it responded. And note, telnetting to port 25 is a non-default telnet port, because port 23 is the default telnet port. When you type in a space and then a port number, you're telling
    the telnet client to use that port.
    That is the SAME THING if some sort of application or service is listening on port 8444 on that other server you're trying to telnet to. If there is no app or service listening, it will just time out.
    And no, installing the TELNET service on that sercver will NOT answer to any port other than 23. The telnet service by default, uses TCP 23, unless you specify otherwise.
    So once again, what service or app on that server is supposed to be listening on 8444?
    Ace Fekay
    MVP, MCT, MCITP/EA, MCTS Windows 2008/R2 & Exchange 2007, Exchange 2010 EA, MCSE & MCSA 2003/2000, MCSA Messaging 2003
    Microsoft Certified Trainer
    Microsoft MVP - Directory Services
    Technical Blogs & Videos: http://www.delawarecountycomputerconsulting.com/
    This post is provided AS-IS with no warranties or guarantees and confers no rights.

  • Can two computers use same iTunes library on a network drive?

    Can two computers use directly (rather than share) the same iTunes library on a network drive? 
    My media library is on a network drive attached to my Airport Extreme. Right now I share the library with my desktop Mac. I can share fine, but I would like to be able to add, delete, and make other changes in the media library from both computers. The two computers would not be accessing the library at the same time as I am the sole user of both.

    I appreciate your input and I think you're right about this being impossible. But just to clarify, you say I can't "have multiple machines accessing the same music files from a shared location." I can have multiple machines accessing the same music files from a shared location--I just can't have them accessing the same music files simultaneously--which may have been what you meant. For my situation, I think it will be less work to just quit iTunes on my server when I want to run it on my client (using Chicken of the VNC). It's not ideal, but it's less time-consuming than periodically syncing three computers.
    Again, thanks for the input.

  • Port forwarding between two servers from Same subnet

     Hi,
    We have a Cisco ASA 5520 Version 8.4(3). There exists a site to site VPN tunnel between us and a client and the client sends us the data to our local host/server 10.x.x.20 on port 52944. So 10.x.x.20 gets data on port 52944. We want to forward this data to a test server 10.x.x.21( same subnet IP) on port 52945. so basically I want to forward traffic from 10.x.x.20:52944 to 10.x.x.21:52945.
    Is this possible. I am a new bee to the networking and still learning. Excuse me if this sounds silly. 
    I know we can add one more ACL in the VPN tunnel and add this test server IP in the ACL. but, then I have to ask the clinet to change their ACL too. I dont want to do this. So I want to wrok around it. Any help or suggestions is much appreciated.
    Thanks in advance :)
    This is my first ticket in the support community.
    cs

    VMs have nothing to do with it, as long as there's network communication between the servers.
    As I said, there must be a service or application listening on that port for it to respond. For example, try this:
    C:\> telnet
    When the telnet prompt opens, type in:
    open mail.messaging.microsoft.com 25
    If it works, you should see this:
    220 CH1EHSMHS035.bigfish.com Microsoft ESMTP MAIL Service ready at Thu, 7 Feb 2013 00:57:33 +0000
    That means that Microsoft's mail servers are LISTENING on port 25 and it responded. And note, telnetting to port 25 is a non-default telnet port, because port 23 is the default telnet port. When you type in a space and then a port number, you're telling
    the telnet client to use that port.
    That is the SAME THING if some sort of application or service is listening on port 8444 on that other server you're trying to telnet to. If there is no app or service listening, it will just time out.
    And no, installing the TELNET service on that sercver will NOT answer to any port other than 23. The telnet service by default, uses TCP 23, unless you specify otherwise.
    So once again, what service or app on that server is supposed to be listening on 8444?
    Ace Fekay
    MVP, MCT, MCITP/EA, MCTS Windows 2008/R2 & Exchange 2007, Exchange 2010 EA, MCSE & MCSA 2003/2000, MCSA Messaging 2003
    Microsoft Certified Trainer
    Microsoft MVP - Directory Services
    Technical Blogs & Videos: http://www.delawarecountycomputerconsulting.com/
    This post is provided AS-IS with no warranties or guarantees and confers no rights.

  • IMessage - when two people use same password to sign into iTunes and Apple

        Myself and partner both use the same password to sign in to Apple and iTunes - we have different emails but use same email to sign in, and we both have different Apple iPhone numbers.
    iMessages used to work really well - he would get his texts on his phone, and mine on mine. Now it's all over the place.
    How do I fix this? I don't know if I've done anything, or if the system has changed. But very frustrating.
    Thanks,
    Belinda

    I would recommend creating a separate Apple ID for yourself and then set up Family Sharing/Home Sharing in order to continue sharing iTunes content between the two accounts. This will help keep your iMessage and FaceTime services separate between the two of you while also saving you from having to purchase content twice.

  • Static NAT to two servers using same port

    I have a small office network with a single public IP address. Currently we have a static nat for port 443 for the VPN. We just received new software that requires the server the software is on to be listening on port 443 across the internet. Thus, essentially I need to do natting (port forwarding) using port 443 to two different servers.
    I believe that the usual way to accomplish this would be to have the second natting use a different public facing port, natted to 443 on the inside of the network (like using port 80 and 8080 for http). But, if the software company says that it must use port 443, is there any other way to go about this? If, for example, I know the IP address that the remote server will be connecting to our local server on, is there any way to add the source IP address into the rule? Could it work like, any port 443 traffic also from x.x.x.x, forward to local machine 192.168.0.2. Forward all other port 443 traffic not from x.x.x.x to 192.168.0.3.
    Any help would be very much appreciated.
    Thanks,
    - Mike                  

    Hi,
    Using the same public/mapped port on software levels 8.2 and below would be impossible. Only one rule could apply. I think the Cisco FWSM accepts the second command while the ASA to my understanding simply rejects the second "static" statement with ERROR messages.
    On the software levels 8.3 and above you have a chance to build a rule for the same public/mapped port WHEN you know where the connections to the other overlapping public/mapped port is coming from. This usually is not the case for public services but in your situation I gather you know the source address where connections to this server are going to come from?
    I have not used this in production and would not wish to do so. I have only done a simple test in the past for a CSC user. I tested mapping port TCP/5900 for VNC twice while defining the source addresses the connections would be coming from in the "nat" configuration (8.4 software) and it seemed to work. I am not all that certain is this a stable solution. I would imagine it could not be recomended for a production environment setup.
    But nevertheless its a possibility.
    So you would need the newer software on your firewall but I am not sure what devce you are using and what software its using.
    - Jouni

  • Two iPhones using same iCloud account with separate contact lists?

    Our family has two iPhones and we each use different contact lists.  If we use the same Apple Id is there a way to separate the contact lists in iCloud or do we need separate account (i.e Apple Id's)?

    I have my iphone and ipad on Apple icloud services and it finds both units. I think you have to have different account names set up in order to use it. Do you have itunes? if so you can add the device from there. For instructions go to http://www.apple.com check under support, then forums to see if that has been posted.
    Good Luck

  • Can two macs use same disk for Time Machine backup with Airport Extreme?

    Hi
    I use a Western Digital disk as a wireless Time Machine backup connected to the USB port on my Airport Extreme and it works great. My question is: can my girlfriend use that same disk for Time Machine backup from HER computer too? (I don't mind formatting the disk if needed.)
    If she can't, is it then possible to connect a USB hub and have two disks hooked up to the Airport Extreme?
    Thanks for helping. I am constantly in awe of all the help people like you give people like me. Thanks!!!
    Jakob

    I've gone through the manual setup and the assisted setup and can't seem to get my MacBook to use the Time Machine. Any thoughts or help would be greatly appreciated.
    Well, as the Jolly Giant points out....+this type of configuration is not supported by Apple+, so it's difficult, if not impossible, to provide a fix for something that Apple says that you cannot do. Reference these Apple Support documents regarding this topic:
    http://support.apple.com/kb/HT2038
    http://docs.info.apple.com/article.html?path=Mac/10.6/en/15139.html
    Your situation is not unlike other users who try this and find that one computer may backup...(usually for a limited time before corruption issues start to creep in)...but another computer cannot backup. Count me as one of those users who thought that because things seemed to work that I had somehow "beat the system".
    I started getting the corruption error messages after 4-5 weeks of successful backups, so I figured that it did not make sense to continue to try to get a second computer to backup (yes, I too could not setup a second Mac to backup).
    Sorry, I could not get a second machine to backup, so can't tell you how to accomplish that goal. If you want to continue to try backing up this way, you might want to also think about a second backup strategy...just in case backups become corrupted on the WD drive.
    Maybe if Apple says you cannot do this, they just may be right?
    Message was edited by: Bob Timmons

  • How to set up NAT for two servers using same port with ASDM ASA 5505

    Hi there,
    We have a new installation of a ASA 5505 and are trying to get some NAT issues straightened out. Here is the scenario: On our internal network, we have two servers running Filemaker Server, a relational database server that clients connect with using port 5003. Our goal is to be able to allow users from the outside to access either of these servers as needed. I know how to set up a simple static NAT rule and matching Access rule in ASDM which would be fine for a case in which only one server using a given port is running on a network, but for simple static rules I seem to be blocked from entering a different translated port number from the orginal port number, which becomes a problem when two servers we need to access from the outside are running software using the same port number.
    What is the simplest way to address this need? I am guessing that I need to set up a scenario like this, where port 5004 (or any arbitrarily choosen unused port, can be used to access the second server:
    Outside user enters   FQDN:5004  and this translates to Database server # 1 as   192.168.1.40:5003
    and
    Outside user enters   FQDN:5003  and this translates to Database server # 1 as   192.168.1.38:5003
    If so, what is the easist way to get this done? Or is there a better what to handle this scenario?
    Thanks in advance,
    James

    I would create two objects and use object NAT
    object network Obj_5004
    host 192.168.1.40
    object network Obj_5004
    nat (inside,outside) static service tcp 5003 5004
    object network Obj_5003
    host 192.168.1.38
    object network Obj_5003
    nat (inside,outside) static service tcp 5003 5003
    Of course you will need to open your outside interface for tcp ports 5003 and 5004 to make this happen

  • Connect one R/3 and two PI using same ABAP Proxy

    Hi experts,
    Please help me with follow:
    I need connect one system R/3 to two systems PI (7.0 and 7.1) using ABAP Proxy.
    How can see the repository objects of the two PI systems in transaction SPROXY?
    Thanks in advance.

    Hi Gaurav, hi Pedro,
    the mentioned blog is nearly three years old, from that blog:
    >Two systems exist in the landscape:
    >System X : SAP XI 3.0 system and
    >System Y : SAP R/3 on WAS 620
    but Pedro wants to connect PI 7.0 and PI 7.1. assumedly with newer SAP systems. I cant find any hint in the blog how to connect 2 PI systems.
    From my point of view it is not possible to connect 2 PI systems to just one ECC client (may be one system with 2 clients) via ABAP proxy at the same time. You can place always only one Integration Server f.e. at SXMB_ADM / Integration Engine Configuration.
    Regards,
    Udo

  • Two users using same Aperture Library on a server...

    Hi,
    I work in a small design studio, two of us. We used to keep our Aperture library on our server and both use the same library. We both have our own copies of Aperture so can't see why this would be an issue.
    We have both upgraded to Aperture 3 and again would like to use the same library, but since upgrading only I can access the library?
    Any ideas

    I checked the Aperture license agreement and the word "library" is not mentioned in the agreement so that shouldn't be the problem. Have you called Apple Technical Support to discuss? Have you provided feedback to Apple as this would seem to be a bug, not an intentional limitation? http://www.apple.com/feedback/aperture.html
    Just a shot in the dark but I wonder if you will have success if you both use an identical /home/library/preferences/com.apple.Aperture.plist file. The database changed in Aperture 3 from Aperture 2 and it may be that the database is now storing more information about the system than before. Sorry I can't debug as I only have one Aperture licence serial number.

  • How do I share Itunes between two ipods useing same account?

    My mom and I want to share my itunes. I have an Ipod shuffle and she have an Ipod nano. My mom just got her first Ipod. I'v had mine years before her. So I already have my itunes account and everything. I know how to share the music and create playlist and libraries. The only problem I have is that the itunes and computer don't recognise my mom's ipod. If they don't recognise my mom's ipod she can't download music. So how do I get the itunes and computer to  recoginses my mom's ipod and my ipod on the same account?

    have a look at this support article.
    also check out How to use multiple iPods, iPads, or iPhones with one computer.

  • Two computers using same external drive with TM?

    This will probably display my ignorance, but my daughter just got a macbook with leopard installed, and I'm planning on upgrading to leopard on my iMac.
    So long as it has enough gigs, can I purchase only one external drive and use TM to back up both computers to the same external drive?

    Definitely yes.
    That's what I'm doing. I have a 250GB external drive connected to my iMac, and this drive hosts the TM backup of the imac and of my 2 macbooks.
    The drive is always physically connected with the iMac. Macbooks backup over network. Setup is easy too: first make sure your laptop can see the backup drive as a network share. Then set it as the TM drive. That's it.
    The only issue I found is that somehow my macbooks don't do automatic backups every hour no matter how I configure it. I have to right-click on TM icon and choose "backup now". This is yet to be figured out. Other than that, everything is great.

  • Two iPhones using same computer

    My husband and I both have iPhones and we use the same computer to backup our phones. We have had the problem of our apps getting loaded onto each other's phones. Is there something we can do to avoid this?

    Each of you should only check the apps you want installed on your individual devices. You should select your device, then click on the Apps tab in iTunes main window. Check only the apps you want on your device. Your husband does the same thing for his. When you each sync be sure you use your device's configuration. To do so you must be sure that you each assign a unique name to your device in iTunes.
    Please get iPhone User Guide - iOS 6.pdf.

  • Can we control order of cycling when use same access key in multiple locations

    Hi,
    I'm using Jdev 11.1.1.6, IE 9, Firefox 24.0.
    I have created simple jspx page having two buttons, named Add and Close. Close button has got access key as C. When click on Add button I'm calling a <af:popup> and that popup contains two buttons Submit and Cancel. Cancel button has got access key as C. Basically in one jspx file I have got two button using same access key. At runtime those buttons will display one in page and one in popup. 
    In IE: it works fine. When I do access key on popup it will close down the popup.
    In Firefox: it will first focus to the button on the page. When I access the same key for the second time it will set the focus to button on popup and will not execute the action.
    If I'm using different letters it will perform the action in firefox and IE both. In my requirement I need to use the same letter.
    I read in oracle documentation "If the same accessKey appears in multiple locations in the same page of output, the rendering user agent will cycle among the elements accessed by the similar keys.". So it seems to be an expected behaviour.
    My question is: Can we control the order of cycling. i.e. If we do access key on popup, can we first focus on the button in popup instead of button on the page in firefox.?
    Greatly appreciate your ideas.
    Thanks.

    Hi,
    unfortunately yes, the cycling behavior is up to the browser.
    Frank

Maybe you are looking for

  • IPhone 5 in Verizon

    hi i have the iPhone 5 bought it on the net as seond hand, i found out that its locke on verizon, but its unlocked in GSM, i can use it with other GMS carrier here in the middle east, but as far as i know my phone is under verizon even its unlocked,

  • NO SPEAKER AUDIO iPHONE 3G

    About 3 months ago I noticed that my iPhone 3G had 'intermittent' sound coming from the speakers in the phone - like there way a 'short' in the wiring. The phone has NEVER been dropped or abused in any way! Finally, the spkrs just stopped working all

  • 3d printer

    For study, we need to make a 3D-Printer and run it with labview, but if I load a STL file. I don't see a picture of it. I have search for turtorials but it seems there are not much tutorials how to work with 3 pictures in labview. A second problem is

  • What is the PC version of the Airport Express?

    My first generation AirPort Express is on its last legs. I have some new PC products which I'd like to continue to run iTunes and AirPlay. Is this still possible with PC and a router? What does my future look like? Thank you.

  • Accessibility feature asking for re-authorization though it was enabled for my app on Mavericks

    Dear Members. We have an Application which requires Accessibility check enabled.(On Mavericks) After Enabling the Accessibility from System Preferences > Security & Privacy > Privacy > Accessibility. And performing the operation. The Accessibility ch