Solved

Extending file services to another forest / domain users

Posted on 2008-06-25
5
184 Views
Last Modified: 2010-04-18
There is a need to share AD objects, primarily files residing on an AD integrated NAS box, to our users on the Internet, and also to another set of users from one of our JV company's that runs it's own Windows 2003 Std. infrastructure. Ours is native Windows 2003 R2.

I want to avoid establishing trust between the two forests just for the sake of sharing files across which is currently accomplished by FTP transfers. What are my aternatives?
0
Comment
Question by:fahim
  • 3
  • 2
5 Comments
 
LVL 30

Expert Comment

by:LauraEHunterMVP
ID: 21875120
Sharepoint with AD FS for federated authentication.  Non-trivial to deploy, but it negates the need for an Active Directory trust or for VPN connecitivity between offices.

http://support.microsoft.com/default.aspx/kb/912492
http://blogs.technet.com/adfs_documentation/archive/2007/02/16/adfs-sharepoint-server-2007-new-content-available.aspx
0
 

Author Comment

by:fahim
ID: 21905448
Laura, having taken some time to read the stuff, I am a bit wary of two aspects:

1. It seems like AD FS needs to be deployed on both the forests and it rings about schema changes within AD. This is critical as I might not be able to convince our associated partners of undertaking this 'bit' risky operation on their current operational AD org.

2. AD FS over sharepoint is only available as a web interface over IIS. That means, I use browser for tranferring/sharing my files even after I deploy AD FS. Is there any other  (non browser) alternative?

You mentioned that AD FS is 'non trivial' to deploy. Pls elaborate a bit more on this aspect. Does non trivial also imply 'risky'?
Thanks!!
0
 
LVL 30

Accepted Solution

by:
LauraEHunterMVP earned 500 total points
ID: 21910765
1. AD FS does not require schema extensions.

2. AD FS provides web functionality only in its current release, this may change in future releases but nothing has been definitively announced.

3. Non-trivial only implies 'risky' if you do not test before you deploy; this applies to AD FS as much as any technology.
0
 

Author Comment

by:fahim
ID: 21917705
Laura one last point...should I presume 'yes' to my earlier query that I would need to enable ADFS on both the forests, 'to and from' I need to share AD objects/documents!!!??
0
 

Author Comment

by:fahim
ID: 21980117
Calling Laura...!!

Laura...Do I need to enable ADFS on both the forests across which I need to share my files/folders? Pls reply!
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Is your Office 365 signature not working the way you want it to? Are signature updates taking up too much of your time? Let's run through the most common problems that an IT administrator can encounter when dealing with Office 365 email signatures.
This script can help you clean up your user profile database by comparing profiles to Active Directory users in a particular OU, and removing the profiles that don't match.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

863 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

27 Experts available now in Live!

Get 1:1 Help Now