AD trust between two Forests
Hello, I have two AD forests, domain A and B, both at a Windows Server 2008 R2 domain level. They both have an external trust with each other, Transitive - No. I created a security group in domain B but cannot add users from Domain A to it. Does any one know why? I can add users from Domain A to resources(Computers) in Domain B. Also if I have to change the trust, can I edit it or do I have to recreate? Thank you for your help!
June 7th, 2012 12:36pm

What kind of group did you create? If it is Global Group, you cannot add users from another domain into it. For that you need Universal group or create Domain Local group in Dmain B then create Global Group in domain A, put all requried domain A users there and at the end add global group from domain A into domain local group in domain B. Should work fine!Regards, Krzysztof ---- Visit my blog at http://kpytko.wordpress.com
Free Windows Admin Tool Kit Click here and download it now
June 8th, 2012 3:07am

Hello Sysadmin, I recommend you check this checklist once. http://technet.microsoft.com/en-us/library/cc756852%28WS.10%29.aspxRegards, Ravikumar P
June 8th, 2012 3:08am

What kind of group did you create? If it is Global Group, you cannot add users from another domain into it. For that you need Universal group or create Domain Local group in Dmain B then create Global Group in domain A, put all requried domain A users there and at the end add global group from domain A into domain local group in domain B. Should work fine!Regards, Krzysztof ---- Visit my blog at http://kpytko.wordpress.com
Free Windows Admin Tool Kit Click here and download it now
June 8th, 2012 3:14am

Thank you all for your help!
June 27th, 2012 4:06pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics