Urgent Replication

An additional level of replica tion occurs, by default, within a site. Three events cause an immediate change notification to be sent to replication partners. The first is account lockout, the second is change of an LSA secret, and the third is change in the RID Master.The Knowledge Base article Q232690, found at the Microsoft Web site, provides an excellent discussion on the differences in how this is handled with regard to Windows 2000 DCs and NT 4 BDCs in the same domain.

Account Lockout

If you have configured user accounts to be locked out after a specific number of logon attempts, the locked status is urgently replicated to the PDC Emulator and then urgently replicated to all DCs in the same domain and the same site.

Get Special Edition Using Microsoft Active Directory now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.