Domain trust issue


i'm having trouble assigning permissions resources domaina users in domainb.

from server in domaina, on security tab in windows explorer can select domainb object following error: “cannot display objects location because of following error: no authority contacted authentication."

from server in domainb can map drive drive$ share in domaina (via net use) provided use /user switch , specify domain , user name. once have drive mapped server in domaina can assign permissions users in domainb. after permissions assigned, if i view permissions on server in domaina via server in domaina see sids (i presume these domainb).

i tried test access after permission assigned via "domain user" account in domainb trying access share in domaina , got following error: "there no logon servers available service logon request"

domaina windows 2000 native mode. domainb windows 2008 - domain , forest functional level 2003.

domaina configured secondary zone of domainb. dc's in domaina have lmhosts file configured options 0x1b, ox1c , domainb domain name (all 3 options point pdc emulator of domainb). imported lmhosts file wins , verified records exist.

domainb has conditional forwarder configured domaina.

name resolution between domains appears work.

i’ve ran: netdom trust domaina /d:domainb /verify /kerberos … , trust verified successfully.

 

this feels it’s name resolution issue, can’t place finger on issue is. thoughts? appreciated

hello cameron,

1- delete manual records created in wins or lmhosts file

2- delete secondary dns zones

3- configure dns frowarders domaina domainb , vice versa

4- make sure name resolution working fine on both domains , can ping domain name (from domaina ping domainb.com , vice versa)

when make sure these settings ok, following:

on dc holds infrastructure operation master in domainb, first dc in domain, uncheck global catalog check box active directory sites , services snap-in, note should have more 1 dc in domainb.


mcdst, mcsas, mcses, mcdba, mcitp, mcts, mct


Windows Server  >  Directory Services



Comments

Popular posts from this blog

Edit Group Policy

Hyper-V VM not reaching OS 'Logon' screen

DNS question...