Forum Search:
Forum.Brain-Cluster.com: Brain Cluster Technical Forum
Ultimate forum for Technical Discussions

Home » Microsoft » Windows Server » Active Directory » Forest trust
Forest trust [message #419416] Thu, 25 March 2010 04:25 Go to next message
Dylan Armstrong  is currently offline Dylan Armstrong
Messages: 1
Registered: March 2010
Junior Member
Good morning. We have created a trust between two domains in different
forests, enabled sid history and successfully migrated test users. It has now
come to light that we need to create a forest trust because we have an app
which requires Kerberos authenication and I've read that domain trusts don't
support kerberos. I can't imagine there will be an issue, but if someone can
agree that it will be fine that would be great. I guess the existing trust
will theoretically become a shortcut trust.

Cheers, Dylan.
Re: Forest trust [message #419463 is a reply to message #419416] Thu, 25 March 2010 06:27 Go to previous message
pbbergs  is currently offline pbbergs  United States
Messages: 1024
Registered: July 2009
Senior Member
Not sure what your specific question is? There shouldn't be any problems if
you go to a forest trust as opposed to a domain trust. I would recommend
you remove the domain trust before you establish a forest trust. A shortcut
trust is only associated with an inter-forest domain, not sure what would
happen other than it could confuse things. personally I have never seen it
done or heard about this occuring simultaneously.

--
Paul Bergson
MVP - Directory Services
MCITP - Enterprise Administrator
MCTS, MCT, MCSE, MCSA, MCP, Security +, BS CSci
2008, Vista, 2003, 2000 (Early Achiever), NT4
Microsoft's Thrive IT Pro of the Month - June 2009

http://www.pbbergs.com

Please no e-mails, any questions should be posted in the NewGroups. This
posting is provided "AS IS" with no warranties and confers no rights.
"Dylan Armstrong" <Dylan Armstrong@discussions.microsoft.com> wrote in
message news:AFB0BD46-7E02-456B-9E14-50CF239ECC5F@microsoft.com...
> Good morning. We have created a trust between two domains in different
> forests, enabled sid history and successfully migrated test users. It has
> now
> come to light that we need to create a forest trust because we have an app
> which requires Kerberos authenication and I've read that domain trusts
> don't
> support kerberos. I can't imagine there will be an issue, but if someone
> can
> agree that it will be fine that would be great. I guess the existing trust
> will theoretically become a shortcut trust.
>
> Cheers, Dylan.
Previous Topic:domain server releated issue
Next Topic:replication problem
Goto Forum:
  


Current Time: Wed Jan 17 04:14:07 MST 2018

Total time taken to generate the page: 0.01715 seconds
.:: Contact :: Home ::Sitemap::.

Powered by: FUDforum 3.0.0RC2.
Copyright ©2001-2009 FUDforum Bulletin Board Software