Error when Creating trust relationship between two forests


hi guys,

i’m trying create trust relationship between 2 forests in virtual environment using windows 2008 r2 follow :

-trust type : forest trust

-direction of trust : 2 way forest trust

-side of trust : both domain , specified domain

-outgoing trust authentication level – local forest : forest-wide authentication

-outgoing trust authentication level – specified  forest : forest-wide authentication

  but error message in end of create trust wizard :

“the error : source object’s sid exist in destination forest”

.both dns servers in each forest configured stub zone each other

.domain , forest functional level both forests :windows server 2008

. there wasn’t error in local forest , remote forest’s dc has following security events :

-          4776 : failure

-          4625: failure

both servers cloned in workgroup before prompted dc in each forest .

any , suggestions appreciated , in advance :)

hello,

i suggest run sysprep on machines, unfortunate there limitations, dcs not supported http://technet.microsoft.com/en-us/library/cc722158(v=ws.10).aspx http://support.microsoft.com/kb/828287?wa=wsignin1.0 http://support.microsoft.com/kb/314828

in case see no other way around demoting, running sysprep , promote again. not sure if adding clean dc, demoting cloned ones may here keep @ least ad informations.


best regards

meinolf weber
mvp, mcp, mcts
microsoft mvp - directory services
my blog: http://msmvps.com/blogs/mweber/

disclaimer: posting provided no warranties or guarantees , confers no rights.



Windows Server  >  Directory Services



Comments

Popular posts from this blog

CRL Revocation always failed

Failed to query the results of bpa xpath

0x300000d errors in Microsoft Remote Desktop client