Two Non Trusted Domains and Windows 7 Credential Manager
Hi, We have a unique domain setup - we have two domains that are not trusted and we use a VPN to connect from our Corporate domain to our "Web" domain. We have users that have mapped network drives on the Corporate domain and go back and forth from the "web" domain to the "Corporate" domain. They also use SQL 2008 Management Studio to access databases both domains. We automatically map user's home directory on the "Corporate" domain. My problem is Windows 7 Credential Manager is storing the "web" domain credentials and locking users out of the "Corporate" domain. When I use a registry hack to disable Credential Manager, then the user cannot access databases thru SQL Management Studio on the "web" domain. How do I get Credential Manager in Windows 7 to play nicely with two domains that do not trust each other.
May 6th, 2011 5:01pm

Hi, Thanks for posting in Microsoft TechNet forums. Please disconnect the internet connection (wireless and cable) before booting into Windows then re-connect and tell us the result. Best Regards Magon Liu TechNet Subscriber Support in forum. If you have any feedback on our support, please contact tngfb@microsoft.com Please remember to click Mark as Answer on the post that helps you, and to click Unmark as Answer if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.
Free Windows Admin Tool Kit Click here and download it now
May 9th, 2011 6:46am

This is a domain computer. If I disconnect the Cat 5 and Wireless I cannot log into the domain, can only log in locally. Would have to log off and log back in, which we can do, to access the first domain that doesn't trust the 2nd domain. Any other suggestions? Thanks very much - this is a huge issue for us. Theresa
May 9th, 2011 7:00pm

Hi, First not sure the relationship between mapped drive and SQL management studio and from the symptom I supposed the SQL server name in both Domains is the same. For such scenario, we need to use FQDN of SQL server when click save the credential to Credential Manager. Additionally we can create two bat files during go back and forth between two domains. Thanks.
Free Windows Admin Tool Kit Click here and download it now
May 10th, 2011 7:24am

Hi, No SQL server name is NOT the same - we have 2 domains and many SQL servers (all with different names). We also have mapped drives in both domains. Domains do not trust each other. Credential Manager is applying wrong credentials for wrong domain. Users name is the same in both domains, but different passwords (and thus SIDS). Does Credential Manager not work in untrusted domains?? Thanks. Theresa Greene, MCSE
May 10th, 2011 2:04pm

Hi, Did you map driver for SQL management studio? I still confuses about how you stored the credential to Credential Manager, please take map drive example to describe how you stored the credential, eg: you mapped a X drive and pointed to one SQL server in Corporate domain with the user Corporate\user1, mapped a Y drive and pointed to one SQL server in Web domain with the user Web\user1, etc. Additionally, to check what credentials stored in Credential Manager, please help me run the following command on one Windows 7: cmdkey /list > cmdkey.txt You can send the output file cmdkey.txt to the following workspace link: URL: https://sftus.one.microsoft.com/ChooseTransfer.aspx?key=c31d217f-9d74-42d9-9b4c-f68468181556 Password: 3K#3h7_Vl0z Thanks.
Free Windows Admin Tool Kit Click here and download it now
May 11th, 2011 7:03am

Hi Theresa, How about things are going on your end? Please provide us more information regarding the symptom so that we can make more progress. Thanks for your time and efforts. Best regards, Jim
May 14th, 2011 12:45am

Hi - it is still not going well. I have two Windows 2003 networks. Two domains, that do not trust each other. We use a VPN to access our "web" domain. We use mapped drives to access our home directory on our "office" domain. I have one user that needs to access both domains, and he uses a VPN connection. He also uses SQL 2008 to access databases on both domains. The problem arises when he has mapped network drive to his "home" domain, and has to access items on the "web" domain. Credential Manager automatically stores usernames and passwords and confuses them on his domains. He has the same username for both domains, but different passwords. I have tried disabling Credential Manager, and it would then not allow him to access hiw "web" domain, would not recognize in SQL his correct user account. We have other users that have this issue, but they can reboot and it clears them up. He has to access both domains adn is back and forth across them. How do you fix Credential Manager so it does NOT confuse usersnames and domains? Thanks. I am going to have put XP back on his system, cannot get Windows 7 to play nicely with two untrusted domains.
Free Windows Admin Tool Kit Click here and download it now
May 24th, 2011 1:54pm

Thanks. As we know, the credential manager stored credential like the following format: Target: Domain:target=Server Name Type: Domain Password User: username Since the computers in both Domains are different, there is no two same credentials. When you access to “office” domain, the "office” domain credential is used and vice versa. Therefore, we still need to check how the current credential stored, could you help me get the output cmdkey /list > cmdkey.txt for us? Thanks.
May 25th, 2011 12:48pm

Hi, I'll send it first thing in the morning - my problem user has left for the day. Thanks for taking the time to try to work with this. Drive maps are as follows: H drive = mapped to server (sysadmin is name) in "home" domain. He did have other drives mapped to servers in "web" domain When he would go back and forth, he would get locked out of "home" domain He did not use mapped drives for SQL. He would open Sql and then go to Open Server list an use list of server names there (he would have his VPN already connected to "web" domain) I'll send text file to you in the morning. Thanks.
Free Windows Admin Tool Kit Click here and download it now
May 31st, 2011 5:34pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics