myITforum and Windows IT Pro Forums

 Advice needed: deploying SCCM in multi-domain and multi-enterprise environment

Author Message
Muug

  • Total Posts : 3
  • Scores: 0
  • Reward points : 450
  • Joined: 1/24/2014
  • Status: offline
Advice needed: deploying SCCM in multi-domain and multi-enterprise environment Friday, January 24, 2014 6:26 AM (permalink)
0
Hi,
my name is Paul. I'm an employee in a relatively small enterprise (about 700 persons), let's call it Comp-A. My collegue and me are about to make up an SCCM hierarchy for our enterprise. We need to present it next week, which is a bit short, alas. And here are things getting complicated. I'll explain our situation. SCCM will we used to deploy pc's, servers and mobile devices for ourselves. Comp-A consists of three buildings in one city and two sattelites in two other cities. Bandwidth is no problem, we have enough fibers. So Comp-A could do with one primary site and no CAS. BUT.
There is also Comp-B, about 1400 employees, this company has her own domain and her own buildings. It is totally independent. But the firewalls between Comp-A and B are wide open, due to policital reasons. We are twins.
There is also Comp-C, about 120 employees. It's the same scenario: it's a seperate company but the firewalls are wide open. So we aren't twins, we are three !
Next, we have Comp-D and Comp-E. For those two we deliver pc's and their configurations and updates etc.
You get the picture, Comp-A is what you could call a "service provider" for the other companies. We live in some kind of symbiose with them.
Now, knowing all this, how would you organise SCCM? CAS/no CAS? SQL remote or local? Primary site in every Comp or not?And what about redundancy and high availability? We do have a huge data center with hundreds of virtual servers, fibers everywhere, a SAN, so resources are no problem.
<message edited by Muug on Friday, January 24, 2014 7:31 AM>
 
#1
    npherson

    • Total Posts : 395
    • Scores: 59
    • Reward points : 72700
    • Joined: 8/19/2009
    • Location: Saint Paul, Minnesota
    • Status: offline
    Re:Advice needed: deploying SCCM in multi-domain and multi-enterprise environment Sunday, January 26, 2014 2:09 PM (permalink)
    0
    Since corp A, B, and C all have network connectivity, you can handle them with a single primary just fine. If D and E don't have network connectivity, you can handle them as internet clients.
     
    The only technical reason to have a CAS is if you have more than 100,000 clients.
     
     
    I hope that helps,
     
     
    Nash
     
    See my blog posts on MyITforum:
    http://myitforum.com/myitforumwp/author/npherson
     
    #2
      Muug

      • Total Posts : 3
      • Scores: 0
      • Reward points : 450
      • Joined: 1/24/2014
      • Status: offline
      Re:Advice needed: deploying SCCM in multi-domain and multi-enterprise environment Monday, January 27, 2014 3:03 AM (permalink)
      0
      Hi, so multiple domains can be handled within one single Primary Site? That's an interesting thought. So we could have one primary site in corpA, and then put distribution and management points at corpB, C, D and E ? (just to have them as close as possibel to the clients)
       
      #3
        npherson

        • Total Posts : 395
        • Scores: 59
        • Reward points : 72700
        • Joined: 8/19/2009
        • Location: Saint Paul, Minnesota
        • Status: offline
        Re:Advice needed: deploying SCCM in multi-domain and multi-enterprise environment Tuesday, January 28, 2014 9:59 AM (permalink)
        0
        Yes.  The easiest thing to do would be to have the clients from those domains communicate with site system roles in the Corp A domain, especially when those other domains have full two-way trusts.  It is supported to have site system roles in other untrusted forests (DP, MP), but it difficult and cumbersome.
         
        http://technet.microsoft.com/en-ca/library/gg712701.aspx#Plan_Com_X_Forest
        http://blogs.technet.com/b/neilp/archive/2012/08/20/cross-forest-support-in-system-center-2012-configuration-manager-part-1.aspx

        I hope that helps,
         
         
        Nash
        <message edited by npherson on Tuesday, January 28, 2014 10:02 AM>
        See my blog posts on MyITforum:
        http://myitforum.com/myitforumwp/author/npherson
         
        #4
          Muug

          • Total Posts : 3
          • Scores: 0
          • Reward points : 450
          • Joined: 1/24/2014
          • Status: offline
          Re:Advice needed: deploying SCCM in multi-domain and multi-enterprise environment Tuesday, January 28, 2014 10:21 AM (permalink)
          0
          Thanks for your reply Nash.
          Unfortunately the trust between CorpA and B has been removed a few years ago. Some people thought it wasnt' secure enough. Duh. So that complicates things a lot.
          Meanwhile, management over here asked us to implement a POC, and only for a few teams in Corp A. So all in all that's a good decision. We'll be implementing nothing but one PS, using SQL Express locally. That'll give us time to understand SCCM and discover it's benefits. It'll give us a better understanding of the possible scenario's because in the not so far away future, we'll be using SCCM for those other Corps, that's for sure.
           
          #5
            Online Bookmarks Sharing: Share/Bookmark

            Jump to:

            Current active users

            There are 0 members and 1 guests.

            Icon Legend and Permission

            • New Messages
            • No New Messages
            • Hot Topic w/ New Messages
            • Hot Topic w/o New Messages
            • Locked w/ New Messages
            • Locked w/o New Messages
            • Read Message
            • Post New Thread
            • Reply to message
            • Post New Poll
            • Submit Vote
            • Post reward post
            • Delete my own posts
            • Delete my own threads
            • Rate post

            2000-2014 ASPPlayground.NET Forum Version 3.9