Trust Relatinship
i have two domains a and b, each in a different forest. it migrate from to b, but not going to migrate the entire domain, say they are separating.
both domains are already @ network, and configured the conditional forwarders. to create trust relationships and administrative users with the least privileges for all work.
now the questions are:
- kind of relationship of trust is needed, unidirectional or bidirectional.
- when create the trust relationship , asks user name and password create it, this user must an admin. domain?? that role would worth minimum to create relationship?
thank much.
- kind of relationship of trustis needed: depends on requirements of migration - following requirements 'require' two-way trust (assuming you're going use active directory migration tool - admt):
- ability rollback e.g migrate resources, users , groups target domain.
- ability independently migrate resources , users (e.g move users before have migrated resources or other way arround)
regarding rights yes - domain admins sufficent enought.
more information:
create external trust: active directory:
http://technet.microsoft.com/en-us/library/cc738617(v=ws.10).aspx
create forest trust:
http://technet.microsoft.com/en-us/library/cc780479(v=ws.10).aspx
enfo zipper
christoffer andersson – principal advisor
http://blogs.chrisse.se - directory services blog
Windows Server > Directory Services
Comments
Post a Comment