I'm trying to figure out what exactly happens when a machine is added to a domain. Once you type in the domain name:
1) What protocol does the machine use in order to figure out which domain controller to use?
2) How is the domain name looked up? Example: domain is setup as dc=company,dc=com, but the "Windows" domain is COMPA. Some how these names are mapped to each other.
I know that Active Directory and DNS are tightly integrated, but I don't quite understand the details. What is the best source of information on the technical details. Most of what I can find tells you HOW to get things done, but not what happens under the covers.
Best Answer
There is a lot of DNS involved.
Here is the workflow when a workstation is given a NetBIOS name to join (COMPA in your example)
Once it finds a domain controller, it them asks it for it's AD DNS name. Then,
Contrast this with the workflow for the DNS style of name (company.com in your example)
A lot shorter. Once it has identified the domain controllers in the domain, it then uses the credentials supplied by the domaining user to attempt to contact the DC. That can happen over any of the x security protocols AD uses:
The exact protocol is negotiated between the workstation and the domain controller. If no common protocol can be agreed to, the workstation can't be domained.