Anybody here running AD on-prem in your homelab? - eviltoast

I’m curious as to why someone would need to do that short of having a bunch of users and a small office at home. Or maybe managing the family’s computers is easier that way?

I was considering a domain controller (biased towards linux since most servers/VMs are linux) but right now, for the homelab, it just seems like a shiny new toy to play with rather than something that can make life easier/more secure. There’s also the problem of HA and being locked out of your computer if the DC is down.

Tell me why you’re running it and the setup you’ve got that makes having a DC worth it.

Thanks!

  • RedFox@infosec.pub
    link
    fedilink
    English
    arrow-up
    3
    ·
    9 months ago

    All the descriptions are right and techniques. Microsoft sometimes refers to this is split-brain and their documentation.

    Organizations that choose not to do that use an active directory specific subdomain like some of the other comments mentioned. Example: adds. Company.tld.

    Computer1.adds.company.tld. Dc1.adds.cimoany.tld.

    Others doing split domain are

    Adds.company.internal