J
John Coke
Posting here is kind of a defeat for me, I wished that I could have
found the answer to this on my own. My thanks in advance. On to the
issue
I have a WS 2003 domain with an administrative root and 3 children.
One child is in the DMZ, one on an internal segment and one at another
location (not important right now). I would like to populate ACLs on
DMZ member server resources with groups from the internal domain for
administration. The DMZ and the INTERNAL domains are separated by a
firewall. When I attempt to assign permissions on the DMZ member
server, the firewall separating the two domains logs denys from the
DMZ member server to the INTERNAL DC. DMZ and INTERNAL are each in
their own sites and I was under the impression that the "flow" for
this should go through the DMZ DC and not directly to the INTERNAL DC.
That said, is there a way to force this behavior? Again, thank you.
Regards,
-John
found the answer to this on my own. My thanks in advance. On to the
issue
I have a WS 2003 domain with an administrative root and 3 children.
One child is in the DMZ, one on an internal segment and one at another
location (not important right now). I would like to populate ACLs on
DMZ member server resources with groups from the internal domain for
administration. The DMZ and the INTERNAL domains are separated by a
firewall. When I attempt to assign permissions on the DMZ member
server, the firewall separating the two domains logs denys from the
DMZ member server to the INTERNAL DC. DMZ and INTERNAL are each in
their own sites and I was under the impression that the "flow" for
this should go through the DMZ DC and not directly to the INTERNAL DC.
That said, is there a way to force this behavior? Again, thank you.
Regards,
-John