Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

User accounts from parent in Child Domain (Active directory 2003)

Posted on 2013-01-22
2
Medium Priority
?
1,110 Views
Last Modified: 2013-04-02
Hello,

We have a configuration where the parent domain is called domain.com and the child domain called sysdev.domain.com. Our structure is using Windows 2003 active directory.

I would like to be able to log on to the child domain with parent domain credentials.

However, I would like to make a an account who is a part of the domain user accounts in the parent domain a domain admin account in the child domain.

Is this possible? If so, how is this accomplished?

The goal is ot have the child domain managed by developpers within our company (the child domain is designed ot be a test lab) whereby the developpers have complete control over the child domain but not the parent domain..

Can I accomplish this?

Thanks,

Mark
0
Comment
Question by:mbudman
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 57

Accepted Solution

by:
Mike Kline earned 2000 total points
ID: 38805826
Unfortunately no, the domain admin group is a global group and can only have accounts from its own domain

http://technet.microsoft.com/en-us/library/cc755692(v=ws.10).aspx

You can create them a second account, enterprise admins have rights but limit membership in that group.

Thanks

Mike
0
 
LVL 1

Author Closing Comment

by:mbudman
ID: 38840682
Thank you for your assistance.

Mark
0

Featured Post

Get your Conversational Ransomware Defense e‑book

This e-book gives you an insight into the ransomware threat and reviews the fundamentals of top-notch ransomware preparedness and recovery. To help you protect yourself and your organization. The initial infection may be inevitable, so the best protection is to be fully prepared.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to deal with a specific error when using the Enable-RemoteMailbox cmdlet to create a mailbox in the cloud-based service, for an existing user in an on-premises Active Directory.
Wouldn't it be nice if objects in Active Directory automatically moved into the correct Organizational Units? This is what AutoAD aims to do and as a plus, it automatically creates Sites, Subnets, and Organizational Units.
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
This video shows how to use Hyena, from SystemTools Software, to update 100 user accounts from an external text file. View in 1080p for best video quality.

604 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question