Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

trust relationship dependent on specific DC

Status
Not open for further replies.

bookouri

IS-IT--Management
Feb 23, 2000
1,464
US
I have a problem with a trust relationship. We have a trust between our 2003 forest and another 2000 or 2003 forest. Recently the admins at the other forest did "some updates." Since then we cant keep our trust up and going. We can only create the trust successfully from ONE specific DC on our domain. If we create the trust ON that DC and as long as it stay up and running the trust is intact. But if that DC is shut down the trust is lost.
The trust shows up in all the DC's domains and trusts but if that specific DC is down it stops working.

Can anybody point me to what might be going on here? IF I have a trust between domains how can it be dependent on ONE DC?

Any suggestions would be appreciated...

 
May need to look at your DNS for this issue. How does each Forest resolve the other? Are you using DNS forwarders, and if so, how many DC IP's are specified for each domain?
 
I have my DNS servers -- each of my 3 DCs are also AD integrated DNS servers -- with forwarders to the other domain's DNS servers. I dont know how their DNS is configured on the other end. How would I determine how each forest resolves the other? I know if i go into nslookup on my end and enter my domain name I get all 3 of my DNS servers IP addresses returned to me and if I enter in their domain name I get both of their DNS servers returned to me. But I dont know the mechanism that makes that work. If I ping my domain from a workstation the IP address that is returned can bey any one of my DC/DNS servers at random. Other than just setting up trusts and them working, Ive never had to really deal with multiple domains before. Its never been a problem so I never really had to learn much about it.


 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top