[Webinar] Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

Configure people picker to list users from a specific OU in another forest

Posted on 2012-09-19
11
Medium Priority
?
1,020 Views
Last Modified: 2012-10-09
I have a SharePoint server 2010 in forest A, domain1.local and the users is in forest B, domain2.local. There is a two-way trust between forest A and forest B. I want to restrict the people picker only to list users from a specific OU in forest B, domain2.local. I am able to restrict the listing of users to an OU within the same domain using the following command:

stsadm.exe -o setsiteuseraccountdirectorypath -url <url> -path "<path>"

However, I have not figured out how to restrict it to an OU in the other forest and domain. Any clarification on how to resolve this issue is appreciated.
0
Comment
Question by:Supportcomita
  • 6
  • 5
11 Comments
 
LVL 38

Expert Comment

by:Justin Smith
ID: 38413952
I don't think it can be used for remote domains.  

Have you tried specifying the remove domain (DC=remote,DC=int) in the path?  Did it error?
0
 
LVL 38

Expert Comment

by:Justin Smith
ID: 38413959
ALso, verify your app pools and timer account have access on that remote OU
0
 

Author Comment

by:Supportcomita
ID: 38414023
I have Access to the OU in forest B, domain2.local. I am able to list the users in the specific OU, but I can also list users in other OUs. I want to restrict it to only show results from the OU I spesify. I am not at all sure if the command I've used that worked within the same domain is usable for this purpose.
0
Veeam and MySQL: How to Perform Backup & Recovery

MySQL and the MariaDB variant are among the most used databases in Linux environments, and many critical applications support their data on them. Watch this recorded webinar to find out how Veeam Backup & Replication allows you to get consistent backups of MySQL databases.

 
LVL 38

Expert Comment

by:Justin Smith
ID: 38414340
So have you tried it?  It either works or it doesn't, there is no special step you need to do for going across forests (other than verifying permissions).
0
 

Author Comment

by:Supportcomita
ID: 38416636
Yes I have tried using the following command.

stsadm.exe -o setsiteuseraccountdirectorypath -url myurl -path "OU=myOU,OU=hosting,DC=domain2,DC=local"

It doesn't result in an error, but I am not able to find any of the users in people picker after running this command.
0
 
LVL 38

Expert Comment

by:Justin Smith
ID: 38417391
Ok, it probably won't work then.  I've never tried it, but always read the documentation like it would only work in the same domain.
0
 

Author Comment

by:Supportcomita
ID: 38466006
Does anyone have any idea how to resolve this issue?
0
 
LVL 38

Accepted Solution

by:
Justin Smith earned 1500 total points
ID: 38466740
I've done some testing in my multi-forest environment this morning.  I do not think, as the documentation on TechNet says, that it's possible to point to an OU in a domain different than where SharePoint is installed.  

Pointing to OU's in the same domain works just fine.
0
 

Author Comment

by:Supportcomita
ID: 38476357
Thanks for your effort ACH1LLES! I guess the solution is to keep the users and the SharePoint server within the same domain.
0
 

Author Comment

by:Supportcomita
ID: 38476952
I've requested that this question be closed as follows:

Accepted answer: 0 points for Supportcomita's comment #a38476357

for the following reason:

Closed because it seems like there is no good solution to this problem.
0
 
LVL 38

Expert Comment

by:Justin Smith
ID: 38476953
Don't delete the question just because it's not possible.  Accept the comment ( 38466740) stating as much :)
0

Featured Post

Get your Disaster Recovery as a Service basics

Disaster Recovery as a Service is one go-to solution that revolutionizes DR planning. Implementing DRaaS could be an efficient process, easily accessible to non-DR experts. Learn about monitoring, testing, executing failovers and failbacks to ensure a "healthy" DR environment.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

SharePoint Designer 2010 has tools and commands to do everything that can be done with web parts in the browser, and then some – except uploading a web part straight into a page that is edited in SPD. So, can it be done? Scenario For a recent pr…
In case you ever have to remove a faulty web part from a page , add the following to the end of the page url ?contents=1
This Micro Tutorial will teach you how to add a cinematic look to any film or video out there. There are very few simple steps that you will follow to do so. This will be demonstrated using Adobe Premiere Pro CS6.
this video summaries big data hadoop online training demo (http://onlineitguru.com/big-data-hadoop-online-training-placement.html) , and covers basics in big data hadoop .
Suggested Courses
Course of the Month20 days, 10 hours left to enroll

868 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question