V 
		
								
				
				
			
		Victor Fisher
Got myself an interesting issue.
Our network:
Root Domain (Sys.AD) (Native Mode Windows 2000)
Child Domain (Corp.Sys.Ad) (Native Mode Windows 2000)
Child Domain (Web1.Sys.Ad) (Mixed mode Windows 2000)
Child Domain (Nt1.Sys.Ad) (Mixed mode Windows 2000)
I have verified the trusts between the domains.
All of our user accounts are in the child domain corp.sys.ad
Servers are in web1.sys.ad
The mixed mode domains were in-place upgrades from NT 4.0 domains.
The users in corp.sys.ad can not login to any machine in web1.sys.ad.
I know permissions are correct. I can log in to the machines with an
account from web1.sys.ad or nt1.sys.ad. The interesting thing is that
if I type the password incorrect multiple times, it will lock out the
account in corp.sys.ad, but if I continue to type the password
correct, it will never lockout, but never allow me to logon. I get
the message that "The system can not log you on, make sure your
username and password are correct...". Of course, I get a 529 event
in the security log.
If I logon to the server with an account in the local domain, and map
a drive, I can use my corp.sys.ad credentials and everything will work
fine.
Thanks in advance.
				
			Our network:
Root Domain (Sys.AD) (Native Mode Windows 2000)
Child Domain (Corp.Sys.Ad) (Native Mode Windows 2000)
Child Domain (Web1.Sys.Ad) (Mixed mode Windows 2000)
Child Domain (Nt1.Sys.Ad) (Mixed mode Windows 2000)
I have verified the trusts between the domains.
All of our user accounts are in the child domain corp.sys.ad
Servers are in web1.sys.ad
The mixed mode domains were in-place upgrades from NT 4.0 domains.
The users in corp.sys.ad can not login to any machine in web1.sys.ad.
I know permissions are correct. I can log in to the machines with an
account from web1.sys.ad or nt1.sys.ad. The interesting thing is that
if I type the password incorrect multiple times, it will lock out the
account in corp.sys.ad, but if I continue to type the password
correct, it will never lockout, but never allow me to logon. I get
the message that "The system can not log you on, make sure your
username and password are correct...". Of course, I get a 529 event
in the security log.
If I logon to the server with an account in the local domain, and map
a drive, I can use my corp.sys.ad credentials and everything will work
fine.
Thanks in advance.
