wagdy_maher Posted April 24, 2015 Report post Posted April 24, 2015 Hello guys I need help in design in (AD) and SCCM 2012 my topology is : central site (HQ) and 16 branches each branch have 15 users and connected via IP-VPN to central I cannot make additional domain or even RODC in the branches ,I just organized them by create OU for each branch My Question : what's the best practice to organize and manage those branches (in domain controller and in sccm) thank you all Quote Share this post Link to post Share on other sites More sharing options...
GarthMJ Posted April 25, 2015 Report post Posted April 25, 2015 You not really giving a lot of details but bases solely on what little details that you have given, a single primary site leveraging branch cache will be all you need. 1 Quote Share this post Link to post Share on other sites More sharing options...
wagdy_maher Posted April 25, 2015 Report post Posted April 25, 2015 Thank you Garth Jones for you response and advice sorry for give little info I have 17 sites one of them is Central managamenet (HQ) and all remaining the same " managed sites have two database servers and few clients" the branches connected via IP-VPN 6 MB/s I make single domain model , and put each branch in distinct OU also i will deploy SCCM to manage all assets and clients. but now i'm thinking about design to make it easier in SCCM with AD Thanks all Quote Share this post Link to post Share on other sites More sharing options...
GarthMJ Posted April 26, 2015 Report post Posted April 26, 2015 Basic solely on what you have posted, my original design stands. Quote Share this post Link to post Share on other sites More sharing options...
wagdy_maher Posted May 6, 2015 Report post Posted May 6, 2015 Thank you sir Quote Share this post Link to post Share on other sites More sharing options...
Garrett804 Posted May 6, 2015 Report post Posted May 6, 2015 Yeah Garth hit the nail on the head. You do not need a CAS you just need 1 Primary Site Server for SCCM. You only need a CAS if you are going over 100,000 devices and based on the information you gave you are far, far from that. Your AD design for a single domain with sub-OU's for each location is also the way I would go about doing it as well. As far as SCCM is concerned though once you have your primary site up you can then put Distribution Points at each of your 17 locations to take over the deployment of applications for your machines. If you find you have to much traffic from policy checks etc.. then add on a secondary site for the sites that are experiencing the issue. Quote Share this post Link to post Share on other sites More sharing options...