Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Windows one way trust needed between 2 separate forests

Status
Not open for further replies.

blade10

IS-IT--Management
Feb 2, 2008
144
US
To All and(or)Unc Rico-

I have a forest that is running fine (trusted domain)... I created a disparate forest somewhere else which I'd like it to be the trusting forest.. again these two structures are not part of the same forest...

I just can't seem to get the trusts to see eachother.. I am doing this from AD Domains and trusts... my domain admin acct is the same on both sides and not sure other than placing it in the domain admin folder where else to place it.

Moving on, I need to know what else is needed in this new forest I just created in order to been seen by my trusted site (the corporate site).. I try creating the trust from either side but it lets me get to a few configuration windows, then tells me the "domain cannot be contacted".. I get this message from either side..

Are there any other prerequisites needed here? external name server entries maybe?

I want my trusted corporate site to be able to get access to the new forest root domain I created today which is the trusting site.. Are there any additional RPC, or name server entries I need... or perhaps is it a routing issue?

I can get to the internet without a problem on the newly created forest as I was able to download Windows updates to this domain controller (just an fyi, this is the only DC in this new forest, its holding all fsmo roles which I know is bad practice but this is all I have for now and will enhance later)..

Any ideas as I'd really like to at least get the trust up and then create selective authentication and some other features I have read about..

any ideas? would greatly appreciate it!

blade
 
you need DNS Forwarders pointing to that new Forests DC's so that it can resolve the domain...otherwise it is a network issue
 
thanks TechyMcSe2k

I did not do this part ;-(

blade
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top