Trust Requirements

create share 656 Reputation points
2021-01-27T16:30:47.763+00:00

Hi,

Can a forest trust be created between a branch DC of one domain to the Main DC of the other domain or it is necessary for both PDCs to have a connection between them?

thanks.

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,244 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Thameur-BOURBITA 32,636 Reputation points
    2021-01-27T22:54:21.657+00:00

    Hi,

    When you create a trust on a domain controller , you will create new TDO object in domain partition. This object is replicated on all domain controller in same domain.

    TDO Object

    I suggest to you to read this article , it may help you to get more details about network requirement to establish a trust :

    active-directory-forest-trust-attention-points.aspx

    ----------

    Please don't forget to mark helpful reply as answer

    0 comments No comments

  2. Fan Fan 15,326 Reputation points Microsoft Vendor
    2021-01-28T01:14:32.09+00:00

    Hi,

    To create a forest trust, here are some Requirements

    Both Forests need to be in Forest Functional Level 2003 or higher
    Name resolution must be in place. Here are there are 3 ways to do this:

    Conditional Forwarder
    Stub Zone
    Secondary Zone

    The user used to create the trust must be a member of the Enterprise Admins Group or the Domain Admins Group in the forest root or delegated the rights to create trusts.

    So it means that you can create the trust in any RWDCs with the user of the Enterprise Admins Group or the Domain Admins Group in the forest root or delegated the rights to create trusts.

    Best Regards,

    0 comments No comments