AD root domain controller with 3 domains under separated by firewall cannot find domain

Posted on 2011-03-17
Last Modified: 2012-06-27

We have a root domain controller with 3 sub domains. (domain A,B,C)
Each location is separated by a Firewall, But there is a trust between them.

I was able to permission Joe  from Domain A, as a local admin on a server in Domain B.
When he tries to logon through he get an error that the server cant find the domain

What can be the problem?
Question by:neoptoent
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
LVL 51

Expert Comment

ID: 35156203
You need to setup Conditional Forwarding on each domain.

As an example:

On the Forwarder tab of the DNS server in Domain A, you would add Domain B and Domain C.

Do this for each domain so the other 2 domains are forwarders.


Author Comment

ID: 35156983
also on the server i am logging onto i see a 538 type 10 and and then a 576  so it is authenticating....

Author Comment

ID: 35157080
we have forwarders setup to go to the DNS servers
Office 365 Training for IT Pros

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

LVL 51

Expert Comment

ID: 35157139
If you simply ping the NetBIOS domain name of the other domain from your workstation what it the result?

My guess is that it appends your own DNS suffix.


Author Comment

ID: 35157190
doesnt append
but no response when using the fully qualified name
LVL 51

Accepted Solution

Netman66 earned 500 total points
ID: 35158065
If no response then there's a firewall blocking things.  You may need to configure the firewall for DS, and DNS traffic.

Featured Post

PeopleSoft Has Never Been Easier

PeopleSoft Adoption Made Smooth & Simple!

On-The-Job Training Is made Intuitive & Easy With WalkMe's On-Screen Guidance Tool.  Claim Your Free WalkMe Account Now

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A hard and fast method for reducing Active Directory Administrators members.
Here's a look at newsworthy articles and community happenings during the last month.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…

717 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question