Start networking and exchanging professional insights

Register now or log in to join your professional community.

Follow

What is fsmo roles? and how it's working PDC emulator in domain?

user-image
Question added by Shanavas Shahul Hameed , System Administrator , Netgate System & Projecs
Date Posted: 2013/11/09
Hytham Mohamed Mohamed Mostafa
by Hytham Mohamed Mohamed Mostafa , Network Engineer , Mobily

FSMO stands for Flexible Single Master Operations, and FSMO roles (also known as operations master roles) help you prevent conflicts in your Active Directory.

In this article we'll examine the difference between the single and multi-master models in Windows Server2000,2003 and2008 and we'll go through what you need to know about the different FSMO roles. We'll also take a look at FSMO reliability and availability and what's new with FSMO in Windows Server2008.

 

The domain controller that has the PDC emulator FSMO role assigned to it has many duties and responsibilities in the domain.  For example, the DC with thePDC emulator role is the DC that updates passwords for users and computers.  When a user attempts to login, and enters a bad password, it’s the DC with the PDC emulator FSMO role that is consulted to determine if the password has been changed without the replica DC’s knowledge. The PDC emulator is also the default domain controller for many administrative tools, and is likewise the default DC used when Group Policies are updated.

Additionally, it's the PDC emulator which maintains the accurate time that the domain is regulated by.  It’s the time on the PDC emulator which identifies when the last write time for an object was (to resolve conflicts, for example.)  If it’s a forest with multiple domains, then the forest root PDC is the authoritative time source for all domains in the forest.

Each domain in the forest needs its own PDC emulator.

More Questions Like This

Do you need help in adding the right keywords to your CV? Let our CV writing experts help you.