Unable to create external trust between two different domain
hi,
there a requirement have 2 domains. dev.com production domain controller , oim.com used development test.user in oim.com need access resources dev.com , dev.com users must not able access resources oim. com ! domain controller in oim.com crashed few days , there had 1 domain controller in oim. hence have re imaged dc ad promoted server dc again , trying reconfigure external trust between oim.com ad dev.com
oim.com has 1 dc - windows 2012 r2 ( functional level - windows 2008r2)
dev.com has multiple dc - windows 2008 r2 ( functional level - windows server 2003)
i have created 1 way outgoing trust oim.com dev.com , when validate trust oim.com trust validate successfully. when validate trust dev.com getting error " windows cannot find active directory domain controller oim.com.vreify addc available , try again.
i able ping domain controller both domain vice versa , have created conditional forwarder in oim.com dev.com , added respective dns ips. in dev.com domain controller have added dns ip address of oim.com in network properties. added host records too.
also when tried creating trust dev.com getting 2 option ( realm trust , trust windows domain ) , oim.com when try creating trust able options external trust, type of trust etc.
can suggest how fix issue ?
hello,
also in dev.com domain controller have added dns ip address of oim.com in network properties: do not add ip of 'oim' dns server on 'dev' domain controller. won't work, unless it's designed way, , don't think that's case.
__
also added host records too:
adding records dns server in 'dev' forward lookup zone, belonging to domain won't work.
__
either use delegation, or create conditional forwarder on 'dev' dns servers, oim.com
__
also when tried creating trust dev.com getting 2 option ( realm trust , trust windows domain: that caused fact domain controller cannot lookup , verify 'oim.com'.
/\
best regards,
jesper vindum, denmark
systems administrator
help forum: monitor(alert) threads , vote helpful replies or mark them answer, if helps solving problem.
Windows Server > Directory Services
Comments
Post a Comment