Re: External trust and a member server

Tech-Archive recommends: Fix windows errors by optimizing your registry



Hello

Thank you for reply.

This is a quick note to let you know that I am researching your issue and
will get back to you as soon as possible. I appreciate your patience.

Have a great day!

Steven Wang (MSFT)
Microsoft CSS Online Newsgroup Support

--------------------
From: "NetGear" <NetGear@xxxxxxxxxxxxxx>
References: <O5rjk4nJGHA.1288@xxxxxxxxxxxxxxxxxxxx>
<kOepK#xJGHA.224@xxxxxxxxxxxxxxxxxxxxx>
<OSZj5rAKGHA.744@xxxxxxxxxxxxxxxxxxxx>
<k2XmuENKGHA.3944@xxxxxxxxxxxxxxxxxxxxx>
Subject: Re: External trust and a member server
Date: Fri, 3 Feb 2006 18:07:56 +0200
Lines: 42
X-Priority: 3
X-MSMail-Priority: Normal
X-Newsreader: Microsoft Outlook Express 6.00.2800.1506
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1506
Message-ID: <#cR9$uNKGHA.3276@xxxxxxxxxxxxxxxxxxxx>
Newsgroups: microsoft.public.win2000.active_directory
NNTP-Posting-Host: dsl-tregw3-fe3bdc00-64.dhcp.inet.fi 80.220.59.64
Path: TK2MSFTNGXA02.phx.gbl!TK2MSFTNGP08.phx.gbl!TK2MSFTNGP09.phx.gbl
Xref: TK2MSFTNGXA02.phx.gbl
microsoft.public.win2000.active_directory:111383
X-Tomcat-NG: microsoft.public.win2000.active_directory

Thanks for your reply.

Find Now button gives just the same error.

I know that it is not the best practice to add trusted domain's user
directly to a member server's local group. Perhaps I've already mentioned
that we have a mixed mode domain, however. So I can not use group nesting.
And I can not raise any functional levels just now.

What next? Closed ports on firewall? Maybe I did not mention the exact
situation when I sent my question firstly. We have a firewall between the
forests.

"Steven Wang [MSFT]" <v-stwang@xxxxxxxxxxxxxxxxxxxx> wore in message
news:k2XmuENKGHA.3944@xxxxxxxxxxxxxxxxxxxxxxxx
Hi,

Thank you for your prompt reply.

Based on the current situation, I would suggest we perform the following
test:

When you manage local groups on the member server and select the trusted
domain "from this location" field, and then click on Advanced button,
click
Find Now button, whether there is any users and groups can be listed?

If there are users and groups can be listed, I think everything works
fine.

In addition, for the best practice, it is not recommended that add a
trusted domain's user directly to a member server's local group. We may
add the trusted domain's user to a domain local group, and then add this
domain local group to the member server's local group.

Hope this helps.

Kind regards,
Steven Wang (MSFT)
Microsoft CSS Online Newsgroup Support





.


Quantcast