?
Solved

Cross domain authentication

Posted on 2006-05-30
4
Medium Priority
?
276 Views
Last Modified: 2010-04-18
I have two domains merging, aaa.local (2003 native) and bbb.internal (2000 native).

I have configured cross domain trusts and they validate ok.

I can't add the bbb.internal\enterprise admins group to aaa.local\enterprise admins because the locations box of 'Select users, Contacts or groups' contains only the aaa.local domain.

This does not happen when i look at the locations box of permissions on the primary DC's system hard disk, in this case it shows the bbb.internal domain as well as the local domain.

Why is this?
0
Comment
Question by:Wibble_
  • 2
  • 2
4 Comments
 
LVL 13

Expert Comment

by:Kini pradeep
ID: 16790985
how many domain controllers do you have ?

is this happening on a client computer ?

when you login does the option at MS GINA show the trusting or the trusted domain ( list both)

if yes can you type set l on the cmd and check the authenticating DC.

if more than 1 DC is replication broken in any way.

what does  primary DC's system hard disk mean, if you could please explain.

Thanks,
0
 

Author Comment

by:Wibble_
ID: 16791214
how many domain controllers do you have ?
    4 in bbb.internal, one in aaa.local
is this happening on a client computer ?
    all machines, dc or no, but specifically on my clinet (on aaa.local)
when you login does the option at MS GINA show the trusting or the trusted domain ( list both)
    both are visible (users can log on to either domain, assuming accounts exist)
if yes can you type set l on the cmd and check the authenticating DC.
    authdc = dc01.aaa.local
if more than 1 DC is replication broken in any way.
    nope, (there is one ghost dc on bbb.internal though)
what does  primary DC's system hard disk mean, if you could please explain.
    when setting security permissions on \\dc01\c$ the add users location box displays the bbb.internal location, however this is not displayed when adding users to the domain administrators group.

I guess i have missed something out. I there a procedural doc anywhere for merging two domains?
0
 
LVL 13

Accepted Solution

by:
Kini pradeep earned 1000 total points
ID: 16791699
if i am not wrong you are trying to migrate users/computers across to the new domain using active directory migration tool ?

http://support.microsoft.com/kb/326480
you must have gone through this.
0
 

Author Comment

by:Wibble_
ID: 16797148
no, for now i'm actually just trying to set up admin accounts that have rights in both domains. I thought that i could do this by adding the domain admins from one domain to the domain admins group on the other domain, but it wont let me :(
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The HP utility "HP Lights-Out Online Configuration Utility for Windows Server 2003/2008" could be of great use when it comes to remotely configure a HP servers ILO WITHOUT rebooting the server. We would only need to create and run scripts using thi…
Learn about cloud computing and its benefits for small business owners.
Are you ready to place your question in front of subject-matter experts for more timely responses? With the release of Priority Question, Premium Members, Team Accounts and Qualified Experts can now identify the emergent level of their issue, signal…
Whether it be Exchange Server Crash Issues, Dirty Shutdown Errors or Failed to mount error, Stellar Phoenix Mailbox Exchange Recovery has always got your back. With the help of its easy to understand user interface and 3 simple steps recovery proced…

840 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question