AD consolidation and authentication


hello,

i have single forest multiple domain ad infrastructure. consolidating domains 1 , have question authentication process.

i have site users , dc's belongs child.parent.com domain. parent.com domain dc's in site b. if migrate users child.parent.com domain parent.com domain, how user authentication site works till promote parent dc in in site a?. have couple of domains migrate , plan introduce parent dc in site after time.  since users in site (after migration) belongs parent.com domain, travel way across wan authenticated site b (which has parent dc's)? consider site entries still points old child.parent domain.

or  users first contact old dc's (child.parent.com) , dc's contact parent dc's  and authentication since have 2 way parent child trust?... .. ad fundas confused?

 

hi ad-guy,

the logon requests migrated users in site traverse wan , served domain controllers forest root domain in site b unless have domain controller root domain in site a.

have read of this technet global catalog placement article provides pointers other important considerations such application performance (the relationship outlook has global catalog function 1 of more common examples of this; universal group memberships might another).

cheers,
lain



Windows Server  >  Directory Services



Comments

Popular posts from this blog

server manager error: ADAM.events.xml could not be enumerated.

Cannot access Anywhere Access using domain name?

WMI Failure: Unable to update Local Resource Group