Im trying to setup a windows server 2008 domain controller behind a router. The domain will be off the main network so students can maintain and adjust the domain with out bringing down the outside network. not sure if i put this correctly but any help would be greatly appreciated
  1. setup the ACL so AD info can't leave that segment?
  2. Also setup that network on it's own VLAN so traffic wont interfere anywhere else. You can then block that Vlan from being able to see any other vlans. Also by doing a vlan you can setup dhcp and dns on the server and keep it contained.
