Solved

Setting up a Forest Trust

Posted on 2008-10-02
2
1,483 Views
Last Modified: 2012-06-27
I am currently trying to set up a one-way transitive trust between two forests.  I have set up forwarders so the two DCs can talk to each other, but I need to raise my domain and forest functional levels to 2003 (they are currently set to 2000).  One DC runs Windows Server 2003, the other is running Windows Server 2008, so there is no problem there.

My only concern is that we have some member servers that are still running Windows Server 2000, and I want to set this trust up before upgrading those servers.  I read someplace that Windows Server 2000 will have problems in reading Active Directory Objects if the functional level is raised to 2003.  I wasn't 100% clear if that meant any member servers, or just domain controllers.  I need to know I can authenticate and have those 2000 machines contact the other hosts they deal with before I make the irreversible move of upping the functional levels of both the domains and the forests.  If anyone has any experience or can point me in the right direction, it would be much appreciated!
0
Comment
Question by:belly-buster
2 Comments
 
LVL 4

Accepted Solution

by:
ThorSG1 earned 500 total points
ID: 22630747
As long as the Domain Controllers are all 2003 then there is no problem.  We have 2 2000 servers in our domain and we upgraded our functional level without any problems.  Our Parent domain is has serveral 2000 servers as well and did not have an issue either when we changed the forest functional level to 2003.
0
 
LVL 1

Author Closing Comment

by:belly-buster
ID: 31502475
Excellent, that's what I was looking for!  I raised ours as well, and all seems to be working nice.  Thanks.
0

Featured Post

Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

On July 14th 2015, Windows Server 2003 will become End of Support, leaving hundreds of thousands of servers around the world that still run this 12 year old operating system vulnerable and potentially out of compliance in many organisations around t…
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

920 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

15 Experts available now in Live!

Get 1:1 Help Now