Re: Search for Forests

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance

From: Brian Desmond [MVP] (desmondb_at_payton.cps.k12.il.us)
Date: 03/25/04


Date: Wed, 24 Mar 2004 21:33:51 -0600

Sean,

Unless the forest is trusting yours, there's not really a way of finding
them, that I know of. Anybody can setup a DNS server and a DC if they want,
and you'll never know about it.

As far as a tree of your forest, I think AD Domains & trusts would probably
provide a hierarchial view, but, I don't have a multi domain forest around.

-- 
-- 
Brian Desmond
Windows Server MVP
desmondb@payton.cps.k12.il.us
http://www.briandesmond.com
"Sean" <spenndor@no-email-visteon.com> wrote in message
news:%23jHoLVbEEHA.2968@TK2MSFTNGP12.phx.gbl...
> Is there a utility or method by which I can do a search across our
> corporate network and find all active directory forests (or domains) in
> existence?
>
> We are trying to sniff out possible rogue installs of Active Directory.
>
> Also, is there a good tool that will show me the current layout of a
> forest (what is the forest root domain, what other root tree domains
> exist, and what child/parent relationships there are)?
>
> THANKS!
>
> - Sean


Relevant Pages

  • Re: GC Question
    ... Just model how a DNS server would FIND ... new user accounts what tool should I use to make sure that i'm not ... other domains in the forest don't have Several folders that the top ... is able to logon on that domain including in the Domain Controller ...
    (microsoft.public.win2000.active_directory)
  • One-way trust between domains in same forest?
    ... I have a forest with an existing domain, domain A. I want to add another ... domain, domain B, to the forest as a separate tree, not as a subdomain of ... Domain B's DNS server is configured with domain A's DNS servers as ... If I create domain B in the forest, the default trusts that are set up are ...
    (microsoft.public.windows.server.active_directory)
  • Re: Inability to resolve names across domains
    ... > NJ DNS server. ... >> ping by IP also. ... I'm guessing if that I would've created the forest on the NJ ...
    (microsoft.public.windows.server.setup)
  • Re: Inability to resolve names across domains
    ... > NJ DNS server. ... >> ping by IP also. ... I'm guessing if that I would've created the forest on the NJ ...
    (microsoft.public.windows.server.dns)
  • Re: Inability to resolve names across domains
    ... > NJ DNS server. ... >> ping by IP also. ... I'm guessing if that I would've created the forest on the NJ ...
    (microsoft.public.windows.server.networking)