Active Directory - Child domains

Tarrant64

Diamond Member
Sep 20, 2004
3,203
0
76
Hello all, it's been awhile!

I need to be educated and at the very least pointed in the right direction. I have a couple of domains in my current network. I can't merge (not right now anyways) the two domains together, so I wanted to set it up for multiple domains. Is there a MS Wizard/Step-by-step doc for this?

My goal here is to have authentication between domains an option. I know there may be some changes with DNS that need to be made too, i'm prepared to make whatever changes need to be done.

At my last job we did this for a few months before doing a complete merge of the domains. I know after the change when logging in you have multiple drop-down domains on the login screen. This is the setup I am looking for.

Thank you!
 

imagoon

Diamond Member
Feb 19, 2003
5,199
0
0
All the DNS servers need to be able to at least contact each other. This easy if you create stub zones for each of the other domains in the DNS servers.

You then create trusts between the 2 domains.

http://www.windowsnetworking.com/articles_tutorials/Creating-Trusts-Between-Forests.html

You need to decide what type of trust you need at this point also. Forest level / single domain etc.

You basically create a trust on each domain, each will generate a password that you have to enter in to the other to establish a 2 way trust. After which you need to start blending security as you believe you will only get "forest admin" rights. You need to add user rights on each side etc as needed
 
Last edited:

Tarrant64

Diamond Member
Sep 20, 2004
3,203
0
76
That was perfect, thanks. Looks a little too easy, but I did see at the end that there are known problems with the last part creating the trust between forests. Noted.
 

imagoon

Diamond Member
Feb 19, 2003
5,199
0
0
I find most people have issues because once the trust is established, MS doesn't have a pretty little script of what to do with it.

Note that 2003 btw. 2008 varies it. The have confederated forests and the ability to merge domains in to other forests if AD is at the 2008 level.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |