Windows Server 2000/2003 Thread, Trusting domains for a federation in Technical; Hi,
My school was recently federated, and as such I have been asked to give the teachers the ability to ...
30th June 2009, 12:45 PM #1
1st July 2009, 07:17 AM #2
- Rep Power
There needs to be a two way trust between the domains (I seem to recall that Microsoft call it something else now, but that's effectively what it is)
Are the clients timing out over the internet link? May have to tweak group policy - wait for network to be available etc. Do you need to 'apportion' a section of the internet link between the two schools with QOS via a router maybe? You don't want connections dropping coz some teacher thinks that video streaming for 30 kids is a great idea.
1st July 2009, 10:48 AM #3
- Rep Power
Hi, thanks for the suggestions.
A 2 way trust has been set up, sorry for not being clear on this. I have tried logging on during "off-peak" hours with little to no network or internet traffic but this does not help.
I realsied last night that I had not pointed the workstation to the other schools DNS. Once i did this, rebooted the machine and tried again, I got a new message
"Unable to log you on because of account restrictions".
The account has full admin rights on the other schools network.
1st July 2009, 10:54 AM #4
Just a quick note, when you modify DNS, make sure the local DNS is still primary, then any external DNS for internet or another domain are secondary.
As for the error message "Unable to log you on because of account restrictions", this could be for a whole range of reasons. The security settings, such as password requirements may differ from one site to the other. Another example are time restrictions which can also prevent you from logging on.
1st July 2009, 11:36 AM #5
- Rep Power
The plot thickens.
I remoted in to the other schools forest root server. I wanted to check the trusts again so I went in to Active Directory Domains and Trusts. I right clicked on the root of it and clicked connect to domain controller. Typed in my own schools domain name and got
"The configuration information describing this enterprise is not available. No authority could be contacted for authentication."
Yet when I log on to my own schools forest root and attempt to connect to the other school's DC in the same way, it works perfectly.
By elsiegee40 in forum Educational IT Jobs
Last Post: 27th March 2009, 08:02 AM
By Harris in forum Educational IT Jobs
Last Post: 18th October 2007, 03:07 PM
By Darms in forum Educational IT Jobs
Last Post: 29th June 2007, 09:29 AM
By localzuk in forum General Chat
Last Post: 22nd May 2007, 07:35 AM
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)
Tags for this Thread