Sorry, probably AD Federation isn’t useful to you, I just re-read what you were asking for. Can you tell me a little about your environment? So you have a main office and a branch office? Are these connected by a VPN or are they on some sort of ISP provided frame relay or something? Does each branch have it’s own domain currently? Is it possible just to have one domain across the whole organisation? How many PCs in the organisation and at each branch?

I’m guessing you’re probably fine to have a single domain and have a DC at each branch that’s large enough to require one, then set up each branch as an AD site.