[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 1349
  • Last Modified:

Need Global groups converted to Domain-Local

We have a lot of Global groups in our 2003 AD. We have merged with another company and despite the two-way trust relationship with their Domain we have some difficulties assigning their user/groups to our some of our groups since they are Global. Ideally the groups needed to have been Domain-Local. Is there a way to convert Global groups to Domain-Local? I haven't found anything on the web that says this can be done - so am not sure if it is even possible. I have explored SubInACL but have not found any solution yet. Any help would be appreciated.
0
jshahpitt
Asked:
jshahpitt
  • 3
  • 2
1 Solution
 
Chris StauntonCommented:
You first have to change them to Universal then to Domain Local

Cheers,


Shoota
0
 
jshahpittAuthor Commented:
Need Global groups converted to Domain-Local
0
 
Chris StauntonCommented:
Change the Global group to Universal.  Apply settings then change it to Domain Local.  Since Global groups can not be changed to Domain Local you have to use this step to first change them to Universal, then to Domain Local.


Shoota
0
 
jshahpittAuthor Commented:
Sorry - earlier comment posted in error.

Thanks Shoota - that was a simple fix indeed!!!
0
 
Chris StauntonCommented:
Awesome :)

Glad to help!
0

Featured Post

Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

  • 3
  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now