• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 6412
  • Last Modified:

Impossible to disable SID Filter (netdom trust DomainS /domain:DomainT /quarantine:no /usero:DomainS\Administrator /passwordo:*)


I have a 2 ways trust between DomainS and DomainT. The trusts work fine. I plan to use ADMT V3 to restructure The Windows NT single domain (=DomainS)

DomainS: (source)
 - Single Domain
 - 1 PDC & 2 BDC running SP6a + high encryption pack
DomainT (target):
 - Single Forest, single domain  
 - 2 DCs running Windows Server 2003 SP2
I applied the ADMT V3 guide's recommandation.

The problem:
When I try to disable the SID Filter, I get an error message (= Access Denied) after running net dom:
"netdom trust DomainS /domain:DomainT /quarantine:no /usero:DomainS\Administrator /passwordo:*"
  • 2
1 Solution
Your command is wrong.  You'd think is would start "Netdom trust source-domain" but it doesn't.

I've been testing this for a domain migration.  From the Windows 2003 domain controller try this command:

netdom trust domainT /domain:domainS /twoway /quarantine:no /usero:administrator /passwordo:<password>
Qais74Author Commented:
Thanks you very much. It works !!!
As I said, I followed Microsoft ADMT Guide and the Technet site !!!  
I had the same problem when I used the ADMT guide.

Good luck with the migration!
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Cloud Class® Course: Ruby Fundamentals

This course will introduce you to Ruby, as well as teach you about classes, methods, variables, data structures, loops, enumerable methods, and finishing touches.

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now