Ric_ Posted October 20, 2005 Posted October 20, 2005 I'm still struggling with my trusts and I think I must have bolloxed it up somewhere along the line. Instead of trying to fix the broken trusts, I was hoping that somebody could write a set of step-by-step instructions for configuring the trusts. My setup and what I need to do follows... * 2 domains on the smae physical netowk sharing the IP address range 192.168.0.0/22 * Admin domain is a single Windows 2000 DC with 2 shares that need to be accessed from the curriculum network (by members of the 'Staff' curriculum security group) * Curriculum network has 2 Windows 2003 DCs and several shares that need to accessed from the admin network. Further details available upon request
bazM Posted October 20, 2005 Posted October 20, 2005 i think it goes something like this: the first part was to add each others dns entries as a secondary zone, right click forward lookup zone, new zone, standard secondary, fill in the other domains dns zone info (ie one of them in our case was ctk.local). do that for both domains. then active directory domains and trusts, right click your domain, select trusts tab, add your trusted domains and domains that trust this domain. then you create a group in each domain with the opposite domains user. maybe test it first. hope it helps.
Ric_ Posted October 20, 2005 Author Posted October 20, 2005 @bazM: Cheers! I have just been looking at it again (that method is what I used) and the trusts seem to have magically sprung into life :?
free4440273 Posted October 20, 2005 Posted October 20, 2005 "then you create a group in each domain with the opposite domains user." sorry for being so daft but i don't understand this bit i have quoted - could you explain again if you don't mind thanks, and sorry..
ChrisH Posted October 20, 2005 Posted October 20, 2005 Create a group in domain 1 and add domain 2 domain users to it. Create a group in domain 2 and add domain 1 domain users to it. This way each domain has a group to refer to that has the other domains users in it.
free4440273 Posted October 20, 2005 Posted October 20, 2005 cheers bazm, and cheers chrish for clarifying - i've got it now you're both stars!
Ric_ Posted October 20, 2005 Author Posted October 20, 2005 Or you can simply reference the objects in the opposite domain. For example, in domain1 you can use DOMAIN2\Users and in domain2 you can use DOMAIN1\Users. I'm still a little puzzled why the trusts didn't work last week and then they simply worked today when I gave it a bash before deleting them. :? I blame the way that the admin domain is configured.
free4440273 Posted October 20, 2005 Posted October 20, 2005 cheers ric, i've got it now you're a star too. (aren't i kind?)
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now