AD root domain controller with 3 domains under separated by firewall cannot find domain

Posted on 2011-03-17
Last Modified: 2012-06-27

We have a root domain controller with 3 sub domains. (domain A,B,C)
Each location is separated by a Firewall, But there is a trust between them.

I was able to permission Joe  from Domain A, as a local admin on a server in Domain B.
When he tries to logon through he get an error that the server cant find the domain

What can be the problem?
Question by:neoptoent
  • 3
  • 3
LVL 51

Expert Comment

ID: 35156203
You need to setup Conditional Forwarding on each domain.

As an example:

On the Forwarder tab of the DNS server in Domain A, you would add Domain B and Domain C.

Do this for each domain so the other 2 domains are forwarders.


Author Comment

ID: 35156983
also on the server i am logging onto i see a 538 type 10 and and then a 576  so it is authenticating....

Author Comment

ID: 35157080
we have forwarders setup to go to the DNS servers
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

LVL 51

Expert Comment

ID: 35157139
If you simply ping the NetBIOS domain name of the other domain from your workstation what it the result?

My guess is that it appends your own DNS suffix.


Author Comment

ID: 35157190
doesnt append
but no response when using the fully qualified name
LVL 51

Accepted Solution

Netman66 earned 500 total points
ID: 35158065
If no response then there's a firewall blocking things.  You may need to configure the firewall for DS, and DNS traffic.

Featured Post

NAS Cloud Backup Strategies

This article explains backup scenarios when using network storage. We review the so-called “3-2-1 strategy” and summarize the methods you can use to send NAS data to the cloud

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Find out how to use Active Directory data for email signature management in Microsoft Exchange and Office 365.
In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

911 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

21 Experts available now in Live!

Get 1:1 Help Now