Share via

Active Directory External One Way Trust Permission Problem

KK 25 Reputation points
2024-01-03T09:41:25.78+00:00

Hello,

We have the following situation / issue:

Domain A has a working external one way trust with domain B.

In domain A the global group G-1 exists

In domain B the local group L-1 exists which contains the G-1 group of domain A\L-1

The group L-1 is a member of the administrator group of domain B

The server SRV-1 ist joined the domain B

The group L-1 is a member of the local administrators group on the SRV-1

A user of the domain A who ist member of the group A\L-1 (and therefore has the local administrator permission on the server and the administrator permission on the domain) wants to add another group from the domain B to the local administrator group on the server SRV-1.

When he searches for the group in domain B in the corresponding add dialog (netplwiz - group administrators - add) he gets a login prompt and after entering his correct login data the error message "During the usage of the provided Username and Password an error occured: Username or Password is incorrect".

At the same time, the firewall shows that SRV-1 wants to communicate with the domain controllers of domain A on ports 88 and 389 and not with those of domain B.

Is this a design or conifg error?

Unfortunately, I can't find any comparable cases / information on this issue.

I can provide further information / screenshots if required.

I look forward to any feedback.

Regards

Kai

Windows for business | Windows Client for IT Pros | Directory services | Active Directory
Windows for business | Windows Server | User experience | Other
0 comments No comments

Answer accepted by question author

  1. Thameur-BOURBITA 36,526 Reputation points Moderator
    2024-01-03T11:35:56.0033333+00:00

    Hi @KK

    Did you get the same behavior when you use the computer management ?


    Please don't forget to accept helpful answer

    Was this answer helpful?

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.