Solved

Members of child domain unable to access parent domain servers

Posted on 2008-10-29
4
237 Views
Last Modified: 2013-12-05
We have a Active Directory 2000 forest with a parent and a child domain. Users from the child domain have always been able to access servers and shares in the parent domain until yesterday when they started being asked for username & password, due to their logon account failing to be authenticated.
The issue is DNS related because if they use the DNS servers in the child domain they fail to authenticate but if pointed at the DNS server in the parent domain they can get access. We have used DHCP to point everyone to the parent domain DNS for now but would like to resolve the issue.
DNS appears ok on the 2 child domain DNS servers with DCDiag passing its tests and replication showing as working. Any ideas?
Let me know if any further info needed. Thanks
0
Comment
Question by:The_Mushrooms
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
4 Comments
 

Author Comment

by:The_Mushrooms
ID: 22834874
Any ideas? Thanks
0
 
LVL 26

Accepted Solution

by:
jar3817 earned 500 total points
ID: 22837392
How about you just delegate the parent zone in the child nameservers.
0
 

Author Comment

by:The_Mushrooms
ID: 22839319
Current set up is one zone covering parent & child domains. Its supposed to be AD integrated but the list of RRs isn't in sync on both sites. To delegate would I do that logged onto the DNS server in the parent or child domain? Any chance of a rough walkthrough so I don't make things worse?
Thanks
0
 

Author Comment

by:The_Mushrooms
ID: 22848581
Any further ideas anyone?
Thanks in advance
0

Featured Post

Office 365 Training for IT Pros

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article runs through the process of deploying a single EXE application selectively to a group of user.
In-place Upgrading Dirsync to Azure AD Connect
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

710 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question