Solved

How to nest a built-in domain admins group in another domain admins group in a different forest?

Posted on 2011-02-25
1
729 Views
Last Modified: 2012-05-11
How to nest a built-in domain admins group in another domain admins group in a different forest?  We have a two way MS trust relationship and we are wondering is there a way to nest domain A (domain admins group) to Domain B (domain admins group).  Perhaps using univeral and local groups to set this up?
0
Comment
Question by:mjm21
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 6

Accepted Solution

by:
chuck-williams earned 500 total points
ID: 34983595
You cannot add a domain Admins Group to another Domain Admins group accross domains. You can either add a Domain Admins group to the Built in Adminstrators group of a domain or Create a Universal Group with the domain admins added and add it to the other domains Built in Adminstrator group. One of those two ways will work I dont remember which. Either way you will have the permissions you want in the Adminstrators group
0

Featured Post

Are your AD admin tools letting you down?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This script can help you clean up your user profile database by comparing profiles to Active Directory users in a particular OU, and removing the profiles that don't match.
A company’s centralized system that manages user data, security, and distributed resources is often a focus of criminal attention. Active Directory (AD) is no exception. In truth, it’s even more likely to be targeted due to the number of companies …
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…

730 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question