Professional Documents
Culture Documents
M d l 77:
Read-Only Domain
Controllers
Overview
Read-Only
Domain Controller
Data Center or
Trusted Network
R li ti is
Replication i Unidirectional
U idi ti l
Problem Solution
Too many domain administrators Provides a new “local
administrator” level of access
per RODC
Prevents accidental Active
Directory modifications by
computer administrators
Does not prevent “local
administrator” from maliciously
modifying the local database
This is a true security feature for
Read-Only Read-Only Domain Controller
Domain
D i Controller
C t ll
Read-Only Domain Name System
D
Does nott supportt client
li t updates
d t directly
di tl
D l t th
Delete the RODC ffrom th
the ddomain
i