Your DiskStation can join a domain service. After joining the domain, domain users can sign in to your DiskStation using their domain accounts and passwords, allowing them to access files and use DSM applications without the need to remember another set of usernames and passwords.
DNS Server
We recommend specifying a DNS server to help your DiskStation search for the domain. If the domain, however, is not registered on the DNS server, the procedure of joining the domain may fail.
Domain Server Type
This field shows the domain type when your DiskStation joins a domain. The domain type will be "AD domain".
Management Mode
This option will determine how you manage the privileges of domain users and groups.
- Trusted Domain: Users and groups in the joined domain as well as trusted domains can be managed. You can filter the list of users and groups by domains.
- Single Domain with OU: Only users and groups in the joined domain will be displayed in this mode. This mode allows you to filter the list of users and groups by organizational units (OUs).
Advanced Domain Options
In most cases, you do not need to fill in any of the advanced domain options. Advanced domain options are needed only for specific domain environments.
- DC IP/FQDN: Specify a DC (domain controller) IP address or FQDN, and your DiskStation will try to communicate with it. If there is more than one IP address or FQDN, insert a comma (,) between each one. Add an asterisk (*) after the last DC IP address or FQDN if you wish, and your DiskStation will try to communicate with the other DC if all specified ones have failed. You will need to add a comma between the asterisk and the last IP address or FQDN.
- Domain NetBIOS name: Specify the NetBIOS name of the domain.
- Domain FQDN (DNS name): Specify the FQDN (DNS name) of the domain.
- Register DNS interface: When joining a domain, the NIC (Network Interface Card) specified here will be registered with the DNS server. Please note that, if the hostname of your DiskStation includes an underscore (_), the registration will fail because underscores (_) cannot be used with DNS.
- Update user/group list: Specify how often your DiskStation automatically updates the domain user/group list. You can customize the time to perform updates daily, weekly, or monthly. In addition, domain user/group lists can be manually updated by going to the Domain Users tab and clicking Update domain data. Please note automatic updates will affect system hibernation.
Joining Read-Only Domain Controller
To join your DiskStation to a read-only domain controller (RODC), you need to specify the "full computer name" (FQDN) of your read-write domain controller (RWDC) in the DC IP/FQDN field. The full computer name should be in the following format: ComputerName.Domain, e.g., "ad01.synology.com".
This section includes the additional domain options below.