RE: Domain trusts thru ISA VPN

Tom Hi
 
Both domains are up and running already. DNS is already running on both
Isa servers, both ISA servers are dc's.
 
No lab on this one, live stuff.
 
Help is very much appreciated
 
Steve
 
-----Original Message-----
From: Thomas W Shinder [mailto:tshinder@xxxxxxxxxxxxxxxxxx] 
Sent: Monday, February 24, 2003 9:26 PM
To: Isa List
Subject: [isalist] RE: Domain trusts thru ISA VPN


http://www.ISAserver.org


Hi Steve,
 
Create the DNS zone first. Make the future DC a secondary to the
existing AD DNS domain. Make sure the zone transfer has taken place
successfully. Make sure the adapter on the future DC is configured to
use itself as its primary DNS server. After the zone transfer takes
place, change the zone type to standard primary and allow for dynamic
updates. Now run dcpromo. Do NOT let the dreaded AD DNS wizard configure
DNS. When its done, restart. After the restart, confirm that the zone
type has changed to AD integrated and that all DCs are listed in the SRV
records. 
 
There are other ways of doing things, but this usually works for me. As
always, test it in your lab first to make sure it works for you.
 
HTH,
Tom
 
 

Thomas W Shinder 
www.isaserver.org/shinder 
ISA Server and Beyond: http://tinyurl.com/1jq1 
Configuring ISA Server: http://tinyurl.com/1llp 

        -----Original Message-----
        From: Steve Moffat [mailto:steve@xxxxxxxxxxxxxxx] 
        Sent: Monday, February 24, 2003 7:22 PM
        To: [ISAserver.org Discussion List]
        Subject: [isalist] RE: Domain trusts thru ISA VPN
        
        
        http://www.ISAserver.org
        
        
        Hi Tom
         
        Can you explain what you mean, or point me in the direction of
documentation
         
        thanks
         
        Steve
________________________________

From:    Thomas W Shinder       
Sent:    Mon 24/02/2003 08:44 PM        
To:      [ISAserver.org Discussion List]        
Subject:         [isalist] RE: Domain trusts thru ISA VPN       
        
        http://www.ISAserver.org
        
        
        Hi Steve,
        
        Yes, I've done it. DNS is the key. Make sure the new DC is able
to
        access the SRV records for the domain.
        
        HTH,
        Tom
        
        Thomas W Shinder
        www.isaserver.org/shinder 
        ISA Server and Beyond: http://tinyurl.com/1jq1
        Configuring ISA Server: http://tinyurl.com/1llp
        
        
        -----Original Message-----
        From: Steve Moffat [mailto:steve@xxxxxxxxxxxxxxx] 
        Sent: Sunday, February 23, 2003 5:17 PM
        To: [ISAserver.org Discussion List]
        Subject: [isalist] Domain trusts thru ISA VPN
        
        
        http://www.ISAserver.org
        
        
        Hi guys
        
        Who can help me out here? I'm trying to set up a trust between 2
        domains. Both are behind ISA, successfully connected by vpn via
rras
        through the isa's.
        
        Has anyone successfully done this??
        
        Steve
        
        This E-Mail is confidential. It is not intended to be read,
copied,
        disclosed or used by any person other than
isalist@xxxxxxxxxxxxxx
        
        Unauthorised use, disclosure, or copying is strictly prohibited
and may
        be unlawful. Optimum Computer Solutions disclaims any liability
for any
        action taken in connection of this E-Mail. The comments or
statements
        expressed in this E-Mail are not necessarily those of Optimum
Computer
        Solutions or its subsidiaries or affiliates.
        
        usermanager@xxxxxxxxxxxxxxx
        
        
        
        ------------------------------------------------------
        List Archives:
http://www.webelists.com/cgi/lyris.pl?enter=isalist
        ISA Server Newsletter:
http://www.isaserver.org/pages/newsletter.asp
        ISA Server FAQ:
http://www.isaserver.org/pages/larticle.asp?type=FAQ
        ------------------------------------------------------
        Exchange Server Resource Site: http://www.msexchange.org/
        Windows Security Resource Site: http://www.windowsecurity.com/
        Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com
        ------------------------------------------------------
        You are currently subscribed to this ISAserver.org Discussion
List as:
        tshinder@xxxxxxxxxxxxxxxxxx
        To unsubscribe send a blank email to
$subst('Email.Unsub')
        
        ------------------------------------------------------
        List Archives:
http://www.webelists.com/cgi/lyris.pl?enter=isalist
        ISA Server Newsletter:
http://www.isaserver.org/pages/newsletter.asp
        ISA Server FAQ:
http://www.isaserver.org/pages/larticle.asp?type=FAQ
        ------------------------------------------------------
        Exchange Server Resource Site: http://www.msexchange.org/
        Windows Security Resource Site: http://www.windowsecurity.com/
        Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com
        ------------------------------------------------------
        You are currently subscribed to this ISAserver.org Discussion
List as: steve@xxxxxxxxxxxxxxx
        To unsubscribe send a blank email to
$subst('Email.Unsub')
        ------------------------------------------------------
        List Archives:
http://www.webelists.com/cgi/lyris.pl?enter=isalist
        ISA Server Newsletter:
http://www.isaserver.org/pages/newsletter.asp
        ISA Server FAQ:
http://www.isaserver.org/pages/larticle.asp?type=FAQ
        ------------------------------------------------------
        Exchange Server Resource Site: http://www.msexchange.org/
        Windows Security Resource Site: http://www.windowsecurity.com/
        Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com
        ------------------------------------------------------
        You are currently subscribed to this ISAserver.org Discussion
List as: tshinder@xxxxxxxxxxxxxxxxxx
        To unsubscribe send a blank email to
$subst('Email.Unsub')   
________________________________


        

        This E-Mail is confidential. It is not intended to be read,
copied, disclosed or used by any person other than
isalist@xxxxxxxxxxxxxx

        Unauthorised use, disclosure, or copying is strictly prohibited
and may be unlawful. Optimum Computer Solutions disclaims any liability
for any action taken in connection of this E-Mail. The comments or
statements expressed in this E-Mail are not necessarily those of Optimum
Computer Solutions or its subsidiaries or affiliates.

        usermanager@xxxxxxxxxxxxxxx
<http://lw11fd.law11.hotmail.msn.com/cgi-bin/compose?mailto=1&msg=MSG103
6540747.31&start=150800&len=20303&src=&type=x&to=usermanager%40optimum%2
emine%2enu&cc=&bcc=&subject=&body=&curmbox=F000000001&a=6ae574725cdd819b
e54d0cade223e798> 

        
________________________________


------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Exchange Server Resource Site: http://www.msexchange.org/
Windows Security Resource Site: http://www.windowsecurity.com/
Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as:
steve@xxxxxxxxxxxxxxx
To unsubscribe send a blank email to $subst('Email.Unsub')


This E-Mail is confidential. It is not intended to be read, copied, disclosed 
or used by any person other than isalist@xxxxxxxxxxxxxx

Unauthorised use, disclosure, or copying is strictly prohibited and may be 
unlawful. Optimum Computer Solutions disclaims any liability for any action 
taken in connection of this E-Mail. The comments or statements expressed in 
this E-Mail are not necessarily those of Optimum Computer Solutions or its 
subsidiaries or affiliates.

usermanager@xxxxxxxxxxxxxxx


Other related posts: