Re: Creating a trust between 2 Windows 2000 Domains
- From: "Pete" <Pete@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Thu, 13 Oct 2005 07:29:02 -0700
Herb
surely only the DCs need WINS configured or do the clients of Domain B -
that are going to connect to the share on Domain A - need configured as well?
"Herb Martin" wrote:
> "Pete" <Pete@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
> news:0871FF7B-917A-4CF6-A764-0D944DD1BE97@xxxxxxxxxxxxxxxx
> >I want to create a trust between two Windows 2000 domains, one with
> >ourselves
> > (domain A) and one domain from an external source (domain B). We do have
> > a
> > VPN connection with the external source. We want to put a trust in so
> > that
> > users in domain B can access a network share in domain A and have write
> > access to it.
> >
> > Basically how do I go about this and is it granular - in that we can
> > specify
> > certain users from Domain B to have access to certain files/folders on our
> > domain.
> >
> > When I try to setup a trust via AD Domains & Trusts I receive an error
> > message stating 'The <domain B> cannot be contacted. If this domain is a
> > Windows domain, the trust cannot be setup until the domain is
> > contacted...'
> > For this I was using the domain name of domain B.
>
> The magic word is "NetBIOS". External trusts are dependent on NetBIOS
> name resolution.
>
> > Reading from other questions posted I see I may have to setup DNS entries,
> > configure WINS etc.. add Firewall rule(s)
> >
> > Can anyone give me a definitive outline on what needs to be done - at our
> > end domain A and at domain B to allow this to happen.
>
> If you are working across routers (likely in your VPN situation) you
> have a practical need for "WINS Server(s)" that are fully replicated.
>
> So setup WINS Server(s) and replicate them (see MMC, any GUI
> Smart admin can do that part) and make sure that EVERY MACHINE
> (both 'clients' AND 'servers') are WINS clients (NIC->IP->Advanced
> properties.)
>
> As to your firewall, you must know how to use the specific tools
> or commands that allow you to open the ports for NetBIOS if you
> are blocking them, but the chances are that your VPN tunnel is allowing
> free flow of traffic through it.
>
> > any guidance would be appreciated.
>
> Routing? What about routing? Can you currently ping or use other
> simple traffic through the VPN IF you specific IP addresses instead
> of names? (If routing doesn't work nothing else is going to either.)
>
> --
> Herb Martin, MCSE, MVP
> Accelerated MCSE
> http://www.LearnQuick.Com
> [phone number on web site]
>
>
>
.
- References:
- Re: Creating a trust between 2 Windows 2000 Domains
- From: Herb Martin
- Re: Creating a trust between 2 Windows 2000 Domains
- Prev by Date: Re: User cannot shutdown from start menu?
- Next by Date: Re: How To Setup An Email Only User Account in Windows 2000
- Previous by thread: Re: Creating a trust between 2 Windows 2000 Domains
- Next by thread: adprep problems
- Index(es):
Relevant Pages
|