Can't add users from external domain to universal security groups

Discussion in 'Active Directory' started by James19830034, May 15, 2007.

  1. Hi,

    I have a domain trust in place, the trust has been validated successfully.
    Domain A is a child domain running Windows 2000 native mode. Domain B is a
    forest running Windows 2003 in 2000 native mode.

    My problem is that I can't add users from Domain B into universal security
    groups in Domain A or vice versa. I can delegate permissions to both domain
    admins to manage the opposite domains AD. DNS has been setup properly,
    primary and secondary zones have been setup on each DNS server on the two
    domains and both domains are on the same subnet.

    I can add users from Domain B into the ACL of any shared resource on Domain
    A and vice versa. However, when I attempt to add a Domain B user directy into
    a universal group on Domain A, Domain B isn't listed under the locations
    property sheet.

    Please help.
    James
     
    James19830034, May 15, 2007
    #1
    1. Advertisements

  2. Joe Richards [MVP], May 15, 2007
    #2
    1. Advertisements

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments (here). After that, you can post your question and our members will help you out.