Fyodor Yemelyanenko
2005-09-04 23:15:56 UTC
Hi, All!
Recently, I have created new child domain in the forest and locate it in
different site (Domain located in other city). I've successfully promoted
new dc there, made it gc and configured replication. All works fine (I've
checked it using repadmin /showreps, directory services event log and ldp).
But when I run AD users and computers and connect it to the child domain I
only see groups from child domain. If user is member of the group from
parent domain I don't see it. When I use ldp (I connect to gc port of child
domain's dc) to view memberOf attribute of user, I see groups from the
parent domain. Why ADUC don't use gc?
Thanks in advance.
Fyodor.
Recently, I have created new child domain in the forest and locate it in
different site (Domain located in other city). I've successfully promoted
new dc there, made it gc and configured replication. All works fine (I've
checked it using repadmin /showreps, directory services event log and ldp).
But when I run AD users and computers and connect it to the child domain I
only see groups from child domain. If user is member of the group from
parent domain I don't see it. When I use ldp (I connect to gc port of child
domain's dc) to view memberOf attribute of user, I see groups from the
parent domain. Why ADUC don't use gc?
Thanks in advance.
Fyodor.