Re: Access to user properties
- From: "Marcin" <marcin@xxxxxxxxxxxxxxxx>
- Date: Fri, 24 Apr 2009 11:52:00 -0400
Eugen,
as far as I understand, without trust relationship in place, under normal
circumstances, RunAs running on a client computer in one domain will not
allow you to authenticate using a user account from another domain.
However, you could potentially accomplish what you are looking for by
relying on passthrough authentication mechanism. This requires that you
invoke DSA.MSC targeting a domain controller in the other domain while
logged on using an account which name and password are identical to an admin
account in the other domain...
hth
Marcin
"Eugen" <meugen@xxxxxxxxx> wrote in message
news:38B433FC-600E-4F80-8B8F-D3EF046838DB@xxxxxxxxxxxxxxxx
Hello AD Masters,
We have 2 forests with NO trusts between them. When we want to access
properties of users from the other forest through DSA.MSC(ADUC console)
everything works fine, the problem is that we cannot change the passwords
of
those users.
So, my question is would it be possible to change the password of the
isers
from the other forest using ADUC console or other tools?
We use this command line to start DSA.msc: runas /netonly
/user:domain\userid "mmc dsa.msc /server=dc.domain.otherforest
Many thanks
.
- Follow-Ups:
- Re: Access to user properties
- From: Meinolf Weber [MVP-DS]
- Re: Access to user properties
- References:
- Access to user properties
- From: Eugen
- Access to user properties
- Prev by Date: KCC
- Next by Date: Re: Access to user properties
- Previous by thread: Re: Access to user properties
- Next by thread: Re: Access to user properties
- Index(es):
Relevant Pages
|