I have a vlan I am using as somewhat of a limited sandbox. I want to start moving my servers over to it. I want to start with my 3 DCs. My DNS is an active directory integrated zone as are the other divisions. I am thinking that all should go well if I manually update DNS with the new ips and do a repadmin /syncall. What else should I be considering? Will I have to manually update Sites and Services as well? thanks<\/p>","upvoteCount":2,"answerCount":11,"datePublished":"2015-01-02T16:24:51.000Z","author":{"@type":"Person","name":"7minabs","url":"https://community.spiceworks.com/u/7minabs"},"acceptedAnswer":{"@type":"Answer","text":"
Yes, that’s all you need to do.<\/p>\n
I’d also suggest that you move one DC and test the process out. Once you change the IP address reboot the box so that it updates everything with the new IP.<\/p>","upvoteCount":0,"datePublished":"2015-01-02T16:36:53.000Z","url":"https://community.spiceworks.com/t/put-dcs-on-separate-vlan-considerations/367898/4","author":{"@type":"Person","name":"Gary-D-Williams","url":"https://community.spiceworks.com/u/Gary-D-Williams"}},"suggestedAnswer":[{"@type":"Answer","text":"
I have a vlan I am using as somewhat of a limited sandbox. I want to start moving my servers over to it. I want to start with my 3 DCs. My DNS is an active directory integrated zone as are the other divisions. I am thinking that all should go well if I manually update DNS with the new ips and do a repadmin /syncall. What else should I be considering? Will I have to manually update Sites and Services as well? thanks<\/p>","upvoteCount":2,"datePublished":"2015-01-02T16:24:51.000Z","url":"https://community.spiceworks.com/t/put-dcs-on-separate-vlan-considerations/367898/1","author":{"@type":"Person","name":"7minabs","url":"https://community.spiceworks.com/u/7minabs"}},{"@type":"Answer","text":"
Yes, you’ll need to update sites and services with the IP ranges or you’ll get errors in the event logs stating that it isn’t sure which site needs to authenticate users.<\/p>\n
It’s not a major issue but it is annoying <\/p>","upvoteCount":0,"datePublished":"2015-01-02T16:28:51.000Z","url":"https://community.spiceworks.com/t/put-dcs-on-separate-vlan-considerations/367898/2","author":{"@type":"Person","name":"Gary-D-Williams","url":"https://community.spiceworks.com/u/Gary-D-Williams"}},{"@type":"Answer","text":"
So under subnets just *add the new range? In other words, once I separate the DCs from the rest of the lan, do I keep both sets of ranges ? ex:<\/p>\n
Division A<\/p>\n
172.16.0.0 (current flat network)<\/p>\n
192.168.0.0 (vlan network that will include the DCs)<\/p>\n
Keep both in the ‘subnets’ section of Sites and Services or delete 172.16.0.0 and replace with 192.168.0.0 for Division A?<\/p>\n
Thanks<\/p>","upvoteCount":0,"datePublished":"2015-01-02T16:35:52.000Z","url":"https://community.spiceworks.com/t/put-dcs-on-separate-vlan-considerations/367898/3","author":{"@type":"Person","name":"7minabs","url":"https://community.spiceworks.com/u/7minabs"}},{"@type":"Answer","text":"
Are your DCs also your DHCP servers? If so you’ll want to add a helper address on the old subnet pointing to the new address of the DC/DHCP server(s).<\/p>","upvoteCount":1,"datePublished":"2015-01-02T16:40:27.000Z","url":"https://community.spiceworks.com/t/put-dcs-on-separate-vlan-considerations/367898/5","author":{"@type":"Person","name":"Ethan6123","url":"https://community.spiceworks.com/u/Ethan6123"}},{"@type":"Answer","text":"
Yes, one is thanks for the catch!<\/p>","upvoteCount":0,"datePublished":"2015-01-02T16:43:55.000Z","url":"https://community.spiceworks.com/t/put-dcs-on-separate-vlan-considerations/367898/6","author":{"@type":"Person","name":"7minabs","url":"https://community.spiceworks.com/u/7minabs"}},{"@type":"Answer","text":"
Ok Ethan, from a Poblano to a Tabasco, as long as the DHCP range is listed; won’t everything be ok since the DHCP server will advertise itself as such? I only ask because I am unsure where to config the helper address.<\/p>","upvoteCount":0,"datePublished":"2015-01-02T17:01:21.000Z","url":"https://community.spiceworks.com/t/put-dcs-on-separate-vlan-considerations/367898/7","author":{"@type":"Person","name":"7minabs","url":"https://community.spiceworks.com/u/7minabs"}},{"@type":"Answer","text":"
if its a new subnet being routed by a layer 3 switch or router you will need a dhcp helper. without a dhcp helper enter subnet a will not know that it has to go to the dhcp server in subnet b to get IPs for the machines in subnet a.<\/p>","upvoteCount":0,"datePublished":"2015-01-02T17:10:21.000Z","url":"https://community.spiceworks.com/t/put-dcs-on-separate-vlan-considerations/367898/8","author":{"@type":"Person","name":"lenmc","url":"https://community.spiceworks.com/u/lenmc"}},{"@type":"Answer","text":"
Ok, it sounds like I’d be configuring that on my Fortigate since my core switches cannot inter vlan route. I think I have enough now thank you all.<\/p>","upvoteCount":0,"datePublished":"2015-01-02T17:17:43.000Z","url":"https://community.spiceworks.com/t/put-dcs-on-separate-vlan-considerations/367898/9","author":{"@type":"Person","name":"7minabs","url":"https://community.spiceworks.com/u/7minabs"}},{"@type":"Answer","text":"