[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

Multiple Active Directory Domains

Posted on 2005-04-19
1
Medium Priority
?
169 Views
Last Modified: 2013-12-04
I have an application which is using Active Directory to authenticate users.

The company I work for has Multiple domains (2 right now) in a single forest

Users are nested by universal groups.

The application can't query users from across either domain

What do you have to do to AD so you can read across the domain?

For example:

We have a forest called "MAIN"
We have a Domain called "DOMAINA" and a Domain called "DOMAINB"
Each Domain is within "MAIN".
We have an Universal Group in DomianA which holds user objects from both Domains.  But users in DomainB cannot query DomainA for a result set of group membership

our application querys an LDAP string and compairs that findings with users memberOF attribute, but fails accross domains....

what do we have to do to allow users from both domainA and domainB share the same LDAP path
example:

CN=MyGroup,OU=Groups,DC=DomainA,DC=COM



For some reasons, if a user is apart of DOMAINA, and DOMAINA has rights to DOMAINB


0
Comment
Question by:hscanlan
1 Comment
 
LVL 12

Accepted Solution

by:
Carlo-Giuliani earned 1000 total points
ID: 13835430
This sounds like you might have a problem with your global catalog(s) and/or infrastructure master.

First of all, when you do an LDAP query that fails, are you querying a global catalog?  I'm not sure, but I think you might need to direct the query to a global catalog when multiple domains are involved.

Second, is your infrastructure master role on a global catalog server?  Normally, it should *not* be on a GC, although there are some exceptions.  

0

Featured Post

Cyber Threats to Small Businesses (Part 2)

The evolving cybersecurity landscape presents SMBs with a host of new threats to their clients, their data, and their bottom line. In part 2 of this blog series, learn three quick processes Webroot’s CISO, Gary Hayslip, recommends to help small businesses beat modern threats.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

As I write this article, I am finishing cleanup from the Qakbot virus variant found in the wild on April 18, 2011.  It was a messy beast that had varying levels of infection, speculated as being dependent on how long it resided on the infected syste…
OfficeMate Freezes on login or does not load after login credentials are input.
Loops Section Overview
Look below the covers at a subform control , and the form that is inside it. Explore properties and see how easy it is to aggregate, get statistics, and synchronize results for your data. A Microsoft Access subform is used to show relevant calcul…
Suggested Courses

830 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question