Trusts using wrong domain controllers..

Tech-Archive recommends: Fix windows errors by optimizing your registry



I have two forests configured:

1. Internal forest (internal.local), used for employees. 20+ domain
controllers around the world, GCs in each Branch Office. North America
branch offices all synchronize only with Vancouver. South Africa
branch offices all synchronize only with Johannesburg. Bridge all Site
links is not enabled.

2. External forest (external.local) for a web app. We have an external
one way trust so that users from our Internal forest can login to the
web app. There is a conditional forward on the external DC for
internal.local that points to a Vancouver (internal.local) DNS server.

The External Forest is located in Vancouver. When I attempt to add
permissions to in the web app, the server makes an LDAP connection to
one of the DC/GC's in South Africa rather than one of the two in
Vancouver, or 5+ in North America.

Is there an easy way to limit which DCs that the external forest uses?

I hope I posted enough information, if not let me know..

.



Relevant Pages

  • Re: Multiple forests with a new Exchange 2007
    ... UserA is created in user forest ... UserA is automaticly provisioned on exchange forest ... I see ILM can do this but I am confused on the documentation. ... Can each of the branch offices still manage their own domain? ...
    (microsoft.public.exchange.design)
  • Re: AD Forest replication Question
    ... The reason for multi domains is that the branch offices ... > the WAN by scheduling replication only during low usage windows. ... forest you will have almost as many problems ... That is already done by AD and the KCC -- by default ...
    (microsoft.public.win2000.active_directory)
  • Re: Joining Domains
    ... on different Domain instead of joining them to the main Domain. ... states and there're just pretty much branch offices of our corporate ... Create a trust between each forest and the main forest and migrate the ... objects across via ADMT. ...
    (microsoft.public.windows.server.active_directory)
  • Trusts using wrong domain controllers..
    ... Internal forest, used for employees. ... branch offices all synchronize only with Johannesburg. ... External forest for a web app. ... internal.local that points to a Vancouver DNS server. ...
    (microsoft.public.windows.server.active_directory)
  • Re: How do I locate an object using its sid in a multi-forests env
    ... If I have a external forest trust for my current forest, ... "Joe Kaplan" wrote: ...
    (microsoft.public.dotnet.security)