Title: Message
that's how we did it. some things work as expected, some work not as expected, some don't work at all.. you do have full functionality on your AD<->downlevel trusts?
-----Original Message-----
From: DiBias, Chip [mailto:[EMAIL PROTECTED]
Sent: Wednesday, June 25, 2003 11:33 AM
To: [EMAIL PROTECTED]
Subject: RE: [ActiveDir] Downlevel Trusts

I have seen similar issues with Windows 2003 native trusts and found that running the wizard on the Win2003 side PRIOR to adding the trusts on the NT4 side provided favorable consistent results.  If done in reverse order the results seem to be un-predictable and "quirky". 

 

Regards,

 

Chip

 


From: Kitchens Arthur E [mailto:[EMAIL PROTECTED]
Sent: Wednesday, June 25, 2003 10:38 AM
To: '[EMAIL PROTECTED]'

 

        Has anyone had any experience with implementing trusts between 2003 native and nt 4.0 domains? We're trying and the results so far are inconsistent and somewhat dysfunctional. Some things work nltest verifies trusts, pass through authentication works from both sides others do not permission denied when browsing AD objects from downlevel domain (same error message as described in Q257646 "STATUS_TRUSTED_DOMAIN_FAILURE" for w2k and fixed in w2k sp1) , command line cusrmgr failes with "Cannot resolve SID", netdom from AD side cannot verify trusts. We've opened a PSS ticket on this but I'm curious if anyone else has tried to deal with this. Thanks in Advance.

A. E. Kitchens
phone 904-301-3578
voice mail 904-665-0555
fax 904-301-3625
Atonally DO:RE:MI:FA:SO:LA:TI:DO

 

It's a very good idea to compare apples and oranges,
that's a big part of what thinking is about.
         - Penn Jillette

Reply via email to