{"id":30,"date":"2008-07-21T19:32:06","date_gmt":"2008-07-22T03:32:06","guid":{"rendered":"https:\/\/www.netometer.com\/blog\/?p=30"},"modified":"2025-10-21T17:46:38","modified_gmt":"2025-10-22T00:46:38","slug":"how-to-install-read-only-domain-controller-rodc-pre-creating-rodc-account","status":"publish","type":"post","link":"https:\/\/www.netometer.com\/blog\/?p=30","title":{"rendered":"How to Install Read-Only Domain Controller (RODC). Pre-Creating RODC account."},"content":{"rendered":"<p>There are certain scenarious when installing a Read Only Domain Controller (RODC) is a suitable approach. Tightening the security at remote sites and reducing the replication traffic are probably two of the main reasons to choose this approach.<\/p>\n<p>Before you proceed with the installation of an RODC in your network, you have to make sure that it covers certain requirements. Here is a brief overview:<br \/>\n&#8211; <strong>PDC Emulator<\/strong> &#8211; the DC holding the PDC FSMO in the domain where you intend to install RODC must be running Windows Server 2008.<br \/>\n&#8211; <strong>Global Catalog<\/strong> &#8211; you need to have a GC running Windows Server 2008.<br \/>\n&#8211; <strong>Domain Functional Level<\/strong> must be at least Windows Server 2003<br \/>\n&#8211; <strong>Forest Functional Level<\/strong> must be at least Windows Server 2003<br \/>\n&#8211; <strong>Schema modification<\/strong> &#8211; you must run once in the forest <strong>adprep \/rodcprep<\/strong><\/p>\n<p>In addition, you must have in mind the following:<br \/>\n&#8211; <strong>Global Catalog<\/strong> &#8211; if there are Outlook clients in the branch office, the RODC should be configured as GC.<br \/>\n&#8211; <strong>Authentication Requests<\/strong> &#8211; the RODC forwards authentication requests to a Global Catalog, running Windows Server 2008, in a site that is closest to the site with the RODC.<br \/>\n&#8211; <strong>Multiple RODCs<\/strong> &#8211; RODCs in the same site <strong>DO NOT SHARE<\/strong> information with each other. If the connection to a writable DC is down, there could be inconsistent logon experiences for the users<\/p>\n<p>In the following <strong><a title=\"How to Install Read-Only Domain Controller (RODC)\" href=\"https:\/\/www.netometer.com\/video\/tutorials\/2008-server-rodc-two-stages\" target=\"_blank\" rel=\"noopener\">Step-by-Step video tutorial<\/a><\/strong>, we demonstrate the installation of RODC:<\/p>\n<p><a class=\"alignleft\" title=\"How to Install Read-Only Domain Controller (RODC)\" href=\"https:\/\/www.netometer.com\/video\/tutorials\/2008-server-rodc-two-stages\" target=\"_blank\" rel=\"noopener\"><img fetchpriority=\"high\" decoding=\"async\" alt=\"How to Install Read-Only Domain Controller (RODC)\" src=\"https:\/\/www.netometer.com\/blog-pics\/install-rodc-2008.jpg\" width=\"440\" height=\"399\" \/><\/a><\/p>\n<p>Stay tuned on <strong><a title=\"NetoMeter - Screencasts and Step-by-Step Video Tutorials\" href=\"https:\/\/www.netometer.com\/blog\/?feed=rss2\" target=\"_blank\" rel=\"noopener\">NetoMeter<\/a><\/strong> &#8211; subscribe to<a title=\"NetoMeter - Screencasts and Step-by-Step Video Tutorials\" href=\"https:\/\/www.netometer.com\/blog\/?feed=rss2\" target=\"_blank\" rel=\"noopener\"> <strong>NetoMeter RSS<\/strong><\/a>.<\/p>\n<p>Dean<\/p>\n","protected":false},"excerpt":{"rendered":"<p>There are certain scenarious when installing a Read Only Domain Controller (RODC) is a suitable approach. Tightening the security at remote sites and reducing the replication traffic are probably two of the main reasons to choose this approach.<br \/>\nIn the following Step-by-Step video tutorial, we demonstrate the installation of RODC<\/p>\n","protected":false},"author":1,"featured_media":684,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_sitemap_exclude":false,"_sitemap_priority":"","_sitemap_frequency":"","footnotes":""},"categories":[5],"tags":[52,54,55,56,53],"_links":{"self":[{"href":"https:\/\/www.netometer.com\/blog\/index.php?rest_route=\/wp\/v2\/posts\/30"}],"collection":[{"href":"https:\/\/www.netometer.com\/blog\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.netometer.com\/blog\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.netometer.com\/blog\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.netometer.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=30"}],"version-history":[{"count":0,"href":"https:\/\/www.netometer.com\/blog\/index.php?rest_route=\/wp\/v2\/posts\/30\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.netometer.com\/blog\/index.php?rest_route=\/wp\/v2\/media\/684"}],"wp:attachment":[{"href":"https:\/\/www.netometer.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=30"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.netometer.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=30"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.netometer.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=30"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}