User group policies applying from another domain

Kriimsilmm 21 Reputation points
2021-05-09T09:03:58.517+00:00

I've come across an interesting issue:

Domain A and domain B are in different forests and between them is external trust.

Workstation1 is in domain A. User1 account is in domain B.

When User1 logs onto Workstatsion1, it gets all the user policies from Domain A but nothing from domain B as it should.

My questions are:

why is this situation happening?

how to fix this so User1 policies would apply domain B policies, when it logs onto workstation1?

Windows
Windows
A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.
5,598 questions
{count} votes

Accepted answer
  1. Fan Fan 15,356 Reputation points Microsoft Vendor
    2021-05-10T01:21:21.343+00:00

    Hi,

    Situation:
    Workstation1 is in domain A (trusting forest). User1 account is in domain B (trusted forest).
    Based on my understanding, when User1 logs onto Workstation 1, it will get all the computer policies from Domain A but nothing from domain B as it should.

    If you want the user1 apply policies from domain B when logon to Workstation 1, the policy Allow cross-forest user policy and roaming user profiles should be enabled in domain A.
    95067-5101.jpg

    I also did a test in my lab, for your reference:
    https://learn.microsoft.com/en-us/answers/questions/53544/can-group-policies-apply-in-one-way-trust-between.html

    Best Regards,

    2 people found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.