Link to home
Start Free TrialLog in
Avatar of ajruiz
ajruiz

asked on

Cross-Forest Logon Issue

We currently have an External Trust between two domains, soon to be a Forest Trust once the other side upgrades their server to Windows 2003.  When a laptop user from DomainA logs in from DomainB, the logon process is extremely slow over the WAN.  

What is our best solution?  Is there a way to prevent the group policy, romaing profiles, etc.?
Avatar of MidnightOne
MidnightOne
Flag of United States of America image

If a user from domainA is logging into domainB and the only way to get the logon information is across a WAN link, the easiest way to up the speed is to place a DC from the opposite domain in the site you're logging if from. So, the site where DomainA resides will need a DC (set up as a global catalog) for DomainB and vice-versa.

HTH

MidnightOne
hmm my guess is probably a DNS problem, i have plenty of clients logging on over the WAN with no problems at all...make sure you have conditional forwarding configured from the 2003 side of things...from the other side, point the clients to the correct DNS servers internally and see what happens, you can also apply a slow link policy with GPO
ASKER CERTIFIED SOLUTION
Avatar of Ubuntop
Ubuntop
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial