Trusting Domains

  • Thread starter Thread starter Chris DeFreitas
  • Start date Start date
C

Chris DeFreitas

This may be a really simple question but please help me out!

I am trying to setup a trust between my office and a remote office we teamed
up with. I setup a VPN between the Firewalls that we have and can see the
other network fine. I setup a trust in AD Domains and Trusts between the two
domains. My question is how can I make is so that I can add users from my
domain to groups on their domain. When I goto a group on their server and
attempt to add a user I cannot see my domain only theirs. Any ideas? Do i
maybe have the incorrect trust setup?

Thanks,
Chris DeFreitas
 
Hi Chris,

Can you provide more information about the environment?

1. Are both domains Windows 2000?
2. Are they both members of the same forest, or different forests?
3. Do you have name resolution working between forests, via the VPN link?

Thanks,

--
Mike Shepperd MCSE Windows 2000/NT 4.0
Support Engineer
Enterprise Platforms Support
Directory Services Team

This posting is provided "AS IS" with no warranties, and confers no rights.
Use of included script samples are subject to the terms specified at
http://www.microsoft.com/info/cpyright.htm

Note: For the benefit of the community-at-large, all responses to this
message are best directed to the newsgroup/thread from which they
originated.


--------------------
| From: "Chris DeFreitas" <[email protected]>
| Subject: Trusting Domains
| Date: Wed, 11 Feb 2004 11:36:18 -0800
| Lines: 14
| X-Priority: 3
| X-MSMail-Priority: Normal
| X-Newsreader: Microsoft Outlook Express 6.00.2800.1158
| X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165
| Message-ID: <[email protected]>
| Newsgroups: microsoft.public.win2000.active_directory
| NNTP-Posting-Host: h-67-101-117-202.snfccasy.covad.net 67.101.117.202
| Path:
cpmsftngxa07.phx.gbl!cpmsftngxa06.phx.gbl!TK2MSFTNGP08.phx.gbl!TK2MSFTNGP11.
phx.gbl
| Xref: cpmsftngxa07.phx.gbl microsoft.public.win2000.active_directory:66262
| X-Tomcat-NG: microsoft.public.win2000.active_directory
|
| This may be a really simple question but please help me out!
|
| I am trying to setup a trust between my office and a remote office we
teamed
| up with. I setup a VPN between the Firewalls that we have and can see the
| other network fine. I setup a trust in AD Domains and Trusts between the
two
| domains. My question is how can I make is so that I can add users from my
| domain to groups on their domain. When I goto a group on their server and
| attempt to add a user I cannot see my domain only theirs. Any ideas? Do
i
| maybe have the incorrect trust setup?
|
| Thanks,
| Chris DeFreitas
|
|
|
 
Both are Windows 2000 domains,

They are not in the same forest. They are two pre-existing domains that i
created the trust between.

I have DNS setup on both sides. My servers are secondary for their domain.
and vice versa.
No WINS running over the VPN.

Thanks,
Chris
 
Chris,

Are you able to ping from the PDC Emulator of each domain to the PDC
Emulator of the other by using FQDN?

If they can see each other, then try creating two new test groups. One as
a Domain Global group and one as a Domain Local group.
Try adding users from the other domain to each of the new groups and let me
know what you find.

Thanks,

Mike


--------------------
| From: "Chris DeFreitas" <[email protected]>
| References: <[email protected]>
<$#[email protected]>
| Subject: Re: Trusting Domains
| Date: Wed, 11 Feb 2004 14:02:28 -0800
| Lines: 86
| X-Priority: 3
| X-MSMail-Priority: Normal
| X-Newsreader: Microsoft Outlook Express 6.00.2800.1158
| X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165
| Message-ID: <[email protected]>
| Newsgroups: microsoft.public.win2000.active_directory
| NNTP-Posting-Host: h-67-101-117-202.snfccasy.covad.net 67.101.117.202
| Path:
cpmsftngxa07.phx.gbl!cpmsftngxa06.phx.gbl!TK2MSFTNGXS01.phx.gbl!TK2MSFTNGXA0
5.phx.gbl!TK2MSFTNGP08.phx.gbl!TK2MSFTNGP11.phx.gbl
| Xref: cpmsftngxa07.phx.gbl microsoft.public.win2000.active_directory:66283
| X-Tomcat-NG: microsoft.public.win2000.active_directory
|
| Both are Windows 2000 domains,
|
| They are not in the same forest. They are two pre-existing domains that i
| created the trust between.
|
| I have DNS setup on both sides. My servers are secondary for their domain.
| and vice versa.
| No WINS running over the VPN.
|
| Thanks,
| Chris
|
| | > Hi Chris,
| >
| > Can you provide more information about the environment?
| >
| > 1. Are both domains Windows 2000?
| > 2. Are they both members of the same forest, or different forests?
| > 3. Do you have name resolution working between forests, via the VPN
link?
| >
| > Thanks,
| >
| > --
| > Mike Shepperd MCSE Windows 2000/NT 4.0
| > Support Engineer
| > Enterprise Platforms Support
| > Directory Services Team
| >
| > This posting is provided "AS IS" with no warranties, and confers no
| rights.
| > Use of included script samples are subject to the terms specified at
| > http://www.microsoft.com/info/cpyright.htm
| >
| > Note: For the benefit of the community-at-large, all responses to this
| > message are best directed to the newsgroup/thread from which they
| > originated.
| >
| >
| > --------------------
| > | From: "Chris DeFreitas" <[email protected]>
| > | Subject: Trusting Domains
| > | Date: Wed, 11 Feb 2004 11:36:18 -0800
| > | Lines: 14
| > | X-Priority: 3
| > | X-MSMail-Priority: Normal
| > | X-Newsreader: Microsoft Outlook Express 6.00.2800.1158
| > | X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165
| > | Message-ID: <[email protected]>
| > | Newsgroups: microsoft.public.win2000.active_directory
| > | NNTP-Posting-Host: h-67-101-117-202.snfccasy.covad.net 67.101.117.202
| > | Path:
| >
|
cpmsftngxa07.phx.gbl!cpmsftngxa06.phx.gbl!TK2MSFTNGP08.phx.gbl!TK2MSFTNGP11.
| > phx.gbl
| > | Xref: cpmsftngxa07.phx.gbl
| microsoft.public.win2000.active_directory:66262
| > | X-Tomcat-NG: microsoft.public.win2000.active_directory
| > |
| > | This may be a really simple question but please help me out!
| > |
| > | I am trying to setup a trust between my office and a remote office we
| > teamed
| > | up with. I setup a VPN between the Firewalls that we have and can see
| the
| > | other network fine. I setup a trust in AD Domains and Trusts between
the
| > two
| > | domains. My question is how can I make is so that I can add users from
| my
| > | domain to groups on their domain. When I goto a group on their server
| and
| > | attempt to add a user I cannot see my domain only theirs. Any ideas?
| Do
| > i
| > | maybe have the incorrect trust setup?
| > |
| > | Thanks,
| > | Chris DeFreitas
| > |
| > |
| > |
| >
| >
|
|
|
 
Back
Top