?
Solved

Two domains trust relationship problem.

Posted on 2011-02-14
13
Medium Priority
?
1,031 Views
Last Modified: 2012-05-11
Greetings experts,

Heres the senario and the way it is set up,

Domain A : Windows server 2003 enterprise
First DC in its own forest.

Domain B : Windows server 2008 enterprise
First DC in its own forest.

Both domains are using an existing working local network. This network has its own DHCP and DNS server running.

I need to make a trust relationship between these two domains but the problem is that both domains cannot nslookup eachother, they can only ping one another IP addresses.

I tried putting in forwarders and adding root hints for both DNS servers so they can see eachother, but it still wont work.

Do I need to have both domains registered in the existing DNS server that is running in the local network first?, and if it is the problem am having now? or can I still do it but am doing something wrong?

Thank you
0
Comment
Question by:ksssg
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 7
  • 5
13 Comments
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 34894468
You have few choices. Each domain need access to their DNS zones. Create in each domain:

1) Conditional forwarders
2) Stub zones

then you will be abke use DNS names in DNS query

If you need assistance, please let me know. I would try to prepare a guide for you :)

Regards,
Krzysztof
0
 

Author Comment

by:ksssg
ID: 34894502
Ok, both domains have their own DNS servers running, both DNS servers are tied to their own active directory.

Yes please, I would really appreciate the help very much.

Thank you iSiek
0
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 34894507
So, let me some time :)
0
Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

 
LVL 6

Expert Comment

by:Raneesh Chitootharayil
ID: 34894509
0
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 34894538
OK, please follow with my step-by-step guide to create conditional forwarders :)

Krzysztof
DNS-conditional-forwarders.pdf
0
 

Author Comment

by:ksssg
ID: 34895454
Hello guys,

Thank you for your help, I am here to say that I haven't got the time to try your solutions yet, but I have a good question before I go on and try yours iSiek,

This question is for you my friend,

When I went to the link that raneeshcr provided up there, which is this one:
http://www.experts-exchange.com/Networking/Protocols/DNS/Q_22915350.html 

at the end of the post, they recommended using stubs, is it the best choice to what I plan to do, or conditional forwarders?

Thanks again
0
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 34895487
Difference is that:

conditional forwarders have specified IP manually and you have to care to get them up-to-date
Using stub you have in each domain, information about each DNS servers in other domains. When they will be changed/added your stub zone will be informed and replicate those changes. It cares for that instead of you :]

Stub zones requires DNS replication but conditional forwarders not :)
Both methods are good but I think I would choose in your situation Stub zone and allow zone replication to those DNS server :)

Krzysztof
0
 

Author Comment

by:ksssg
ID: 34895507
Ok, last question to get over with this, you helped me with the conditional forwarders, but I honestly havent tried it yet, but now I want to use the stubs since you recommended it too,

lol, how am I gonna do this now?
0
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 34895519
OK, give me a little bit time and you will see new attachment ;)

Krzysztof
0
 

Author Comment

by:ksssg
ID: 34895527
ok
0
 
LVL 39

Accepted Solution

by:
Krzysztof Pytko earned 2000 total points
ID: 34896201
OK, here you are :]

Krzysztof
Configuring-Stub-zone.pdf
0
 

Author Comment

by:ksssg
ID: 34900688
Daaang, wow, now that is impressive, thank you very much my friend,

that was genius :), awesome work :).
0
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 34900725
You're welcome :)
I'm glad it could be useful ;)

Krzysztof
0

Featured Post

The Eight Noble Truths of Backup and Recovery

How can IT departments tackle the challenges of a Big Data world? This white paper provides a roadmap to success and helps companies ensure that all their data is safe and secure, no matter if it resides on-premise with physical or virtual machines or in the cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I was prompted to write this article after the recent World-Wide Ransomware outbreak. For years now, System Administrators around the world have used the excuse of "Waiting a Bit" before applying Security Patch Updates. This type of reasoning to me …
After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
This tutorial will walk an individual through locating and launching the BEUtility application and how to execute it on the appropriate database. Log onto the server running the Backup Exec database. In a larger environment, this would generally be …
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
Suggested Courses

765 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question