|
Posted by Roger Abell [MVP] on August 7, 2006, 7:13 pm
Please log in for more thread options
> Is it possible to have a select few members (one or two) of Domain A be
> full administrators of Domain B without establishing a trust between the
> two?
>
> Background:
> I am part of large organization and I have about 10 machines that are in
> a separated workgroup on a separate subnet in my dept. I want to put them
> in a domain for administrative purposes. I am not an admin on Domain A and
> these units would be on Domain B.
> I know that if I trust Domain A I can make this happen but I would prefer
> to not involve that domain at all. It is an NT4 domain and they will be
> upgrading to 2k3 AD at some point and I don't want my domain disturbed by
> that tranistion.
>
> What are the possibilities?
>
Define new accounts in Domain B for those individuals.
Without any trust or shared forest there is no meaning to the foreign
accounts and no use may be made of them,
--
Roger Abell
Microsoft MVP (Windows Server : Security)
|