Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Trust relations for london DC to Dublin DC 1

Status
Not open for further replies.

asaid

Technical User
Jan 30, 2006
30
GB
i have been setting trust relationships for two separate DC one on london and the other dublin, i can ping each dc from other and get reply well, but when try to make trust it says domain can't be contacted".. when check if this is DNS naming conflict it is not, now i have no idea what to do, so could anyone help to sort this out.

thank you all.
 
when you ping the other DC are you using the name or IP address, if you're using the IP address try it with the name.

How are the two servers connected to each other? VPN?



Windows and NT Admin.
 
I AM USING IP ADDRESS TO PING OTHER END (DC) AND IT DOES GET BACK WITH ANSWERS, BUT WHEN I TRY WITH SERVER-NAME IT IS NOT REPLYING AT ALL, I KNOW WHY!

YES I AM USING VPN THAT CONNECTS THESE SERVERS.

PLEASE HELP!
 
SORRY I MEANT I DON'T WHY I CAN'T PING USING DC SERVER NAME
 
Okay then you basically have a dns issue,

Easiest thing to do right now, is add the ip address of the other DC as the secondary DNS Server on the local area connection of your local DC.

Then run nslookup from your local dc, checking for the other DC.

This should then find the dc, and you will be able to ping.

Once you have created the Trust, go back and change the secondary dns server back to what it was originally.

Windows and NT Admin.
 
The creation of a trust requires NetBIOS naming and will require the other server DNS name to be in DNS.

When you ping with the servername what IP does it try to ping, or does it completly fail to resolve an IP address?
 
From MS technet

Make sure that the Windows NT-based domain controller can resolve the host name of the Windows 2000-based domain controller, and that the Windows 2000-based domain controller can resolve the NetBIOS name of the Windows NT-based domain controller. If you cannot resolve the NetBIOS and host names, create an entry in the Lmhosts file on each domain controller that specifies the location of the other controller.

This same process is still used in 2k/2k3.

LMHOSTS.SAM file location C:\WINDOWS\system32\drivers\etc

 
SORRY TO ASK YOU THIS AGAIN BUT WHEN YOU SAY "add the ip address of the other DC as the secondary DNS Server on the local area connection of your local DC" WHERE DO ADD TO IS IT IN LOCAL NETWORK CONNECTION THEN PROPERTIES AND TCP AND THEN ADD DNS SERVER OR ADD TO SOMEWHERE ELSE, I THINK YOU SPOT WHAT MY PROLEM IS AND I THINK IT IS DNS ISSUE.

NOW STEP BY STEP WHAT IS THE FIRST THING TO DO AND NEXT.

I AM SORRY IF I AM NOT CLEVER ENOUGH TO PICK YOUR EXACT WORDS BUT I WOULD LIKE TO CLERIFY WITH ME WHO I CAN SOLVE THIS ISSUE.

I THANK YOU VERY MUCH FOR YOUR HELP.
 
Hey it's fine we all need help at some point.

1. Open the Control Panel
2. Double click Network Connections
3. right click on 'local area connection' and choose properties.
4. click on 'Internet Protocol (tcp/ip)' and then click on 'properties'
5. At the bottom of the window there is a field marked alternate DNS Server. Make a note of the IP address already here.
6. put in the ip address of the other DC.
7. click okay twice to close both windows.

now try and ping the other dc by its name.





Windows and NT Admin.
 
If you just need to create the trust then add the hostname and IP address to the lmhosts file and you should be able to create the trust without any problems. This will be more reliable than adding a different DNS server.

If you look in the LMHOSTS file it will tell you how to add the entry.



 
I agree with you Porkchopexpress.....but I think I've been a little shortsighted because obviously he's creating a trust for a reason and will therefore want to use the resources on the other domain, so he should really create a secondary zone in dns for the other domain. Otherwise he won't be able to find any resources.



Windows and NT Admin.
 
THANK YOU SO MUCH SCOTT IT WORKED NOW. THAT IS BECAUSE YOU DID HELPED AND I AM GRATEFULL FOR YOUR HELP.


THANK YOU AGAIN.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top