issue with Child and Parent Domains



Hello All,
I am having an issue with a child domain controller (CD). It seems that the
CD cannot logon clients with accounts that exist on the Parent Domain (PD).
Is this because only Enterprise Admins accounts are capable of this? Also,
Does AD replication occur between PD and CD. If so, under AD user and
computer I am not receiving updated objects from PD. Although PD does appear
under AD Users and Computers, I am unable to create a group on the CD and
add user accts from PD, although some not all accounts are seen. The PD
admin insures me that he has delegated control of the OU. What exact
permissions should be used. It is obvious that The CD Admin has read rights
to the OU objects.
Moreover,Is the CD capable of authenticating users that are part of the PD?
Or does a Domain local group need to be created on the CD, with the user
accounts of PD added?
TIA,
Altria



.



Relevant Pages

  • question about child and parent domains
    ... I am having an issue with a child domain controller. ... CD cannot logon clients with accounts that exist on the Parent Domain. ... admin insures me that he has delegated control of the OU. ... Or does a Domain local group need to be created on the CD, ...
    (microsoft.public.win2000.setup)
  • Issue with Child and Parent domains
    ... I am having an issue with a child domain controller. ... CD cannot logon clients with accounts that exist on the Parent Domain. ... admin insures me that he has delegated control of the OU. ... Or does a Domain local group need to be created on the CD, ...
    (microsoft.public.windows.server.general)
  • RE: local admin account password
    ... Subject: local admin account password ... > 4) Only use domain accounts so delete the local ones. ... > The DB file would be encrypted with EFS so only the limited user SQL ... > backup user can make a zip backup of the DB whenever it gets changed ...
    (Focus-Microsoft)
  • RE: local admin account password
    ... Say you have more then 1000 systems, how do you handle the local admin ... Only use domain accounts so delete the local ones. ... The DB file would be encrypted with EFS so only the limited user SQL ... There would be basically two stored procs, ...
    (Focus-Microsoft)
  • local admin account password
    ... Only use domain accounts so delete the local ones. ... 5)My main idea/plan is to store all the passwords on a central SQL server. ... This way you can easily have a different random passwords for the admin ... There would be basically two stored procs, ...
    (Focus-Microsoft)