Child AD administrator cannot add into Enterprise and Schema Admins groups

Discussion in 'Active Directory' started by Yips, Apr 14, 2008.

  1. Yips

    Yips Guest

    I have
    one Root AD server - svr1.test
    one Child AD server - svr2.child.test

    Because I want to install Exchange 2007 into child AD server.

    However, I found I cannot manage (svr2.child.itd) via (svr1.itd) Active
    Directory Domains and Trusts by right-click on the child domain.

    How can I make (svr2.child.itd) "administrator"
    be the members of (svr1.itd) "Enterprise Admins" and "Schema Admins" groups

    Yips, Apr 14, 2008
    1. Advertisements

  2. Yips

    Jorge Silva Guest

    -Are you saying that you installed a child domain because of Exchange?
    -By default the Domain Administrator is Administrator for all domains in the
    forest, when you say you cannot manage the child domain, can you describe
    exactly what is happening?

    I hope that the information above helps you.

    Have a Nice day.

    Jorge Silva
    MVP Directory Services
    Jorge Silva, Apr 14, 2008
    1. Advertisements

  3. by the way, you are using a single labeled DNS name, which is not

    why do you want to put child domain admins in a root domain security group
    that way? you might as well remove the child domain



    # Jorge de Almeida Pinto # MVP Identity & Access - Directory Services #

    Jorge de Almeida Pinto [MVP - DS], May 16, 2008
    1. Advertisements

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments (here). After that, you can post your question and our members will help you out.