Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium


Establishing an External Domain Trust

Posted on 2007-10-01
Medium Priority
Last Modified: 2012-06-27
Domain A - Production - need to establish trust relationship with Domain B  - need to TEST ADMT tool to migrate users from Domain A to Domain B (Company is splitting).

Domain A - is W2000 Native domain, W2000 Forest
Domain B - is W2003 domain, W2000 Forest

Domain A - DNS Forwarding to Domain B - Domain B - DNS Forwarding to Domain A - nslookup resolves.
UserID used is DA and EA in both domains - even has same password (I like to keep it simple).

Get error that LSA is unable to obtain an RPC connection to the domain controller xxxxxx.domainname.com. Please check that the name can be resolved and that the server is available.

Nslookup resolves the name fine.

Am I missing something else?
Question by:eops_hw

Expert Comment

ID: 19994270
I would also create secondary zones in each domain pointing to the other domain.
LVL 11

Accepted Solution

kamalgopi earned 750 total points
ID: 19995813
i would say create a stub zone pointing to the other domain, which can fix the issue and then you can create the trusts properly.

Hope this helps
LVL 13

Expert Comment

by:Kini pradeep
ID: 19996598
hope the two domains donot have the same netbios name... cause if they do then the trust cannot be formed.
create secondary zones pointing to each other and enable zone transfers as mentioned by chuck williams...

Expert Comment

ID: 20094314
I am having the same issue, but I have setup the forwarders between the two domains and I am unable to access the other domain. When I try to validate i get this message:

The Local Security Authority is unable to btain an RPC connection to the domain controller Xtranet.www.statewide.  Please check that the name can be resolved and that the server is available.

Expert Comment

ID: 20094390
When I try to browse by the IP I get this message:

The system cannont find message text for message number 0x in the message file for \\xx.xx.xx.xx\.

Featured Post

Free Tool: Subnet Calculator

The subnet calculator helps you design networks by taking an IP address and network mask and returning information such as network, broadcast address, and host range.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Here's a look at newsworthy articles and community happenings during the last month.
This process allows computer passwords to be managed and secured without using LAPS. This is an improvement on an existing process, enhanced to store password encrypted, instead of clear-text files within SQL
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
This video shows how to use Hyena, from SystemTools Software, to update 100 user accounts from an external text file. View in 1080p for best video quality.

571 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question