Trust Relatinship


hi all,


i have two domains a and b, each in a different forest. it migrate from to b, but not going to migrate the entire domain, say they are separating.

both domains are already @ network, and configured the conditional forwarders. to create trust relationships and administrative users with the least privileges for all work.

now the questions are:

- kind of relationship of trust is needed, unidirectional or bidirectional.

- when create the trust relationship , asks user name and password create it, this user must an admin. domain?? that role would worth minimum to create relationship?


thank much.

- kind of relationship of trustis needed: depends on requirements of migration - following requirements 'require' two-way trust (assuming you're going use active directory migration tool - admt):

  • ability rollback e.g migrate resources, users , groups target domain.
  • ability independently migrate resources , users (e.g move users before have migrated resources or other way arround)

regarding rights yes - domain admins sufficent enought.

more information:

create external trust: active directory:
http://technet.microsoft.com/en-us/library/cc738617(v=ws.10).aspx

create forest trust:
http://technet.microsoft.com/en-us/library/cc780479(v=ws.10).aspx


enfo zipper
christoffer andersson – principal advisor
http://blogs.chrisse.se - directory services blog



Windows Server  >  Directory Services



Comments

Popular posts from this blog

server manager error: ADAM.events.xml could not be enumerated.

Cannot access Anywhere Access using domain name?

WMI Failure: Unable to update Local Resource Group