Does the Read-Only configuration of a DC apply only to Active Directory?
Firstly, I'm not sure how friendly the users of this site are to students but my question seems to be well suited.
I am configuring a domain with multiple Windows Server 2008 machines and am curious whether I can successfully install certain roles on a read-only domain controller. I'm not sure whether the read-only configuration applies only to the Active Directory role or to other roles on that server. I ask because I am unable to make changes to DNS from the read-only machine, which leads me to believe that other roles would also be affected in this way. I do know that the issue with DNS may be because it relies on Active Directory, but still I am unsure.
Thanks to anyone who takes the time to read and answer my question.
Solution 1:
Check this: http://technet.microsoft.com/en-us/library/cc732801(WS.10).aspx
Here is the meat from that article (notice the last item, it relates to your DNS issues):
What new functionality does this feature provide?
RODC addresses some of the problems that are commonly found in branch offices. These locations might not have a domain controller. Or, they might have a writable domain controller but not the physical security, network bandwidth, or local expertise to support it. The following RODC functionality mitigates these problems:
Read-only AD DS database
Unidirectional replication
Credential caching
Administrator role separation
Read-only Domain Name System (DNS)