Re: Best Plan of action for 2 forest.......



Read my article. It provides port numbers as well as a utility to check if
the ports are open.

--

Paul Bergson MCT, MCSE, MCSA, CNE, CNA, CCA
http://www.pbbergs.com

This posting is provided "AS IS" with no warranties, and confers no rights.

"Neil Cadman" <NeilCadman@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:A24E331E-AE25-4760-9910-CB8D2BE80768@xxxxxxxxxxxxxxxx
The two are VPN'ed with a Netscreen Firewall and the VPN is currently set
to
allow any service/Port to go down it, what ports do you think i should
double
check ?

"Paul Bergson" wrote:

They are vpn'd but do you have a firewall up between the two and if so
which
ports are open?

Check out my article on Firewall Replication on my Articles page at
http://www.pbbergs.com


--

Paul Bergson MCT, MCSE, MCSA, CNE, CNA, CCA
http://www.pbbergs.com

This posting is provided "AS IS" with no warranties, and confers no
rights.

"Neil Cadman" <NeilCadman@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:698C4EC7-73E7-4783-BCA9-FDFEC8EAC807@xxxxxxxxxxxxxxxx
HI, We have got two forests for our company now, one in the UK and the
other
in the US.

They are VPN'ed together over a 2 meg line and i have added DNS
farwarders
so the computers in the UK can see/ping all the computers in the US,
and
the
US comps can see all the comps in the UK.

I have tried to do a Forest Trust between the two but all i get back is
(This operation can not be performed on this domain) and i get this
"error"
on both the sides.

I have made sure that both DC's and both Forests are running at 2003
level.
Is there somthing i have forgotten to do ? i have read the prep stuff
on
tech
net about how to set it up and bar the DNS there did'nt seem to be
anything i
needed to do ?

They are both windows 2003 standard version, do they need to be
enterprise
to form a forest trust?

If anyone can think of a better way of making my networks more like one
network than creating a forest trust id like to no your options :D





.



Relevant Pages

  • Re: Best Plan of action for 2 forest.......
    ... All the ports returned data appart from the ... Now im not sure if the exit codes are ... I have tried to do a Forest Trust between the two but all i get back is ...
    (microsoft.public.windows.server.active_directory)
  • Re: Auto-sensing for IPS devices
    ... Auto-Negotiation is essential in larger networks. ... about 1000's of switch ports and PC's connecting/disconnecting ... the ports at whatever they need to be. ... > you MUST set BOTH speed and duplex settings and you MUST set BOTH ...
    (Focus-IDS)
  • Re: Seeking UFFI for sockets on Linux
    ... > case is if a firewall is discarding your packets, ... ports on each of many hosts. ... This program is kind of tailored to networks that look like my ...
    (comp.lang.lisp)
  • Re: one-way trust not working
    ... Also, as stated in my posting, the same problem is ... credentials from the trusted domain. ... Download PortQryUI and from both sides to check to see if the ports are open ... In the trusted domain, branch.local, I set up the DNS server to use as ...
    (microsoft.public.windows.server.active_directory)
  • Re: VPN Ports
    ... Posting on MS newsgroup will benefit all readers and you may get more help. ... Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on ... >> Which ports need to be opened for running VPN ... >> Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on ...
    (microsoft.public.windows.server.networking)