Pros and cons in setting AD domain trust into my AD domain for more than 10+ AD domain and some with same FQDN or label ?

Hi,
Can someone please share what is the pros and Cons of trusting AD domain for more than 10 different AD sites into my existing single domain forest let say ParentCompany.com ?
At the moment I only have one single forest AD domain with the Domain and Forest functionality Windows Server 2003. The main domain controller FSMO role holder is in the Data Center spread across three different VMs running on Windows Server 2008 R2.
The main/parent company has acquired smaller business chain of 15+ offices in which they have their own Domain Controller and also their own domain, sometimes they also got the same AD domain between them (no trust or whatsoever in those 15+ AD domain).
Sounds crazy but yes, there is no standardization in them or whoever manage their IT infrastructure previously.
I'm now considering what are the benefits of creating the AD domain and trust versus importing those AD objects into my domain and then decommission them.
No need to worry about Exchange Server since all of the user in those sites connecting to the RDS to my ParentCompany.com terminal servers.
My requirements or goal are as follows:
1. Simplify the AD domain structure & maintenance
2. Try to avoid the disruptions of the user in terms of downtime and selecting multiple different domain everytime they login to their PC or SharePoint sites.
any kind of help and suggestion would be greatly appreciated.
Thanks.
/* Server Support Specialist */

Can someone please share what is the pros and Cons of trusting AD domain for more than 10 different
AD sites into my existing single domain forest let say ParentCompany.com ?
I think you mean 10 AD domains.
Managing multiple domains can be difficult for administration. I usually recommend using a single domain in a single forest with OUs to separate resources whenever it is possible.
However, if you can't do that then you can simply create trust relationships between your domains. The advantage is that you can enable access to resources to different domains. I do not see cons here.
The main/parent company has acquired smaller business chain of 15+ offices in which they have
their own Domain Controller and also their own domain, sometimes they also got the same AD domain between them (no trust or whatsoever in those 15+ AD domain). Sounds crazy but yes, there is no standardization in them or whoever manage their IT infrastructure
previously.
I'm now considering what are the benefits of creating the AD domain and trust versus importing those
AD objects into my domain and then decommission them.
I would recommend consolidating your domains into a single one. ADMT is a migration tool that you can use. The advantage would be the ease of administration. Also, by having multiple DCs for the same domain across sites, you will take benefit of High Availability
of your and DRP.
This posting is provided AS IS with no warranties or guarantees , and confers no rights.
Ahmed MALEK
My Website Link
My Linkedin Profile
My MVP Profile

Similar Messages

  • Playing music through nano and auto stereo, while traveling...nano is set to shuffle, but if vehicle is stopped for more than a few minutes, nano restarts with same song everytime! How do I make it really shuffle the songs

    Having trouble with Nano shuffle while traveling.  It's connected to my vehicle stereo and set to shuffle. When I stop the vehicle for more than a few minutes, the music resumes with the same song it always starts with. How can I get it to keep shuffling after restarting the vehicle?

    Is the iPod actually doing the music playing?  If the iPod is connected using a USB port (on the car audio system) and docking cable, the car audio system is doing music playing.  The iPod is just acting as a storage device (like a USB flash drive) with song files.  So, in that setup, it does not matter whether the iPod is set to shuffle or not, because the car audio system is playing the songs.  Any change to how it plays songs would have to be a setting on the car audio system.

  • Premiere Pro and Soundbooth won't play video/audio for more than a second.

    Ok, so my issue is that Soundbooth won't play audio for more than a second. It plays a quick bit then stops. Premiere Pro also does the same with video, it plays a quick bit then stops. I don't know if it is connected or not but when I try to change the audio output in Soundbooth to System Default I get this error:
    I set the permissions to premiere and soundbooth to full but it didn't work. I've tried UnInstalling and ReInstalling but that didn't fix the issues either. All of the other programs seem to work. Any help would be much appreciated!!

    Here is the fix.
    1. Open Finder and navigate to /YOUR_HD/Library/Preferences
    2. Rename or move to the Trash the file:   com.apple.audio.AggregateDevices.plist
    3. Relaunch The Program

  • Can someone connect in FaceTime if they are using a friends Macbook Pro, yet, doens't have an Apple ID??  For example, I have an IPAD and a Macbook Pro.  Can I connect to FaceTime on my Macbook Pro and connect with a friend using my IPAD????

    Can someone connect in FaceTime if they are using a friends Macbook Pro, yet, doens't have an Apple ID??  For example, I have an IPAD and a Macbook Pro.  Can I connect to FaceTime on my Macbook Pro and connect with a friend using my IPAD????

    I have also tried changing the contact emails(you can contact me by) in Facetime(diff email for IPAD and Macbook Pro).  Facetime tried the call, I see the accept buttom appear and it goes away as the call never connects?   Any ideas??

  • I accidentally changed a setting on my ipod touch and now it won't change back. I have had my ipod for more than two years and i dont know what to do. If i go to the apple store, would they fix it, or would i need to get a new one?

    I accidentally changed a setting on my ipod touch and now it won't change back. I have had my ipod for more than two years and i dont know what to do. If i go to the apple store, would they fix it, or would i need to get a new one? If it could be fixed, how much would it cost?

    If it is still under warranty you can call the 800 number to apple and enter the serial number and it will tell you if it is under warranty or not if not its like $30 basically for them to help or something like that it said today when i called...
    Or take it to a genius bar if you have one near?
    Or further explain what setting you are needing fixed back and im sure someone here can help you for free!

  • I got a new macbook pro and some resin i can't find my library in the computer.

    i got a new macbook pro and some resin i can't find my library in the computer its self.

    alex000 wrote:
    i got a new macbook pro and some resin i can't find my library in the computer its self.
    Its no longer visible to the user. You can go to the folder by using the Go to Folder using username/library using the go to folder option to the right of the Finder labeled Go, then Go to Folder. Then you can see the contents of the user library folder.

  • I have a macbook pro and some of the original widgets have been removed by mistake and I can't find them torestore them. I wanted the original one back on the dashboard but I have't been able to do that. HELP !!! Thanks...

    I have a macbook pro and some of the original widgets have been removed from the dashboard dock by mistake. I can't seen to find them to restore tham. HELP!!!

    Widgets are located in the folder, users/"user name"/library/widgets/
    Whilst holding down the option key in finder, and selecting the library under the "go" menu, you can access your library within Lion.
    If you have a working Time Machine backup, you can restore those missing files back to the widgets folder. If you don't, and your widgets folder is empty, then they are indeed gone (unless they are still in the trash). You would then have to re-download them from where they came.
    If everything is there, then just click the "+" symbol at the lower left corner of the dashboard screen to add them back to the window.

  • [Fwd: Client accessing MBeanHome for more than one domain receives SecurityException]

    Fwd'ing to security newsgroup
    -------- Original Message --------
    Subject: Client accessing MBeanHome for more than one domain receives
    SecurityException
    Date: 4 Mar 2004 07:27:33 -0800
    From: Dinesh Bhat <[email protected]>
    Reply-To: Dinesh Bhat <[email protected]>
    Organization: BEA NEWS SITE
    Newsgroups: weblogic.developer.interest.management
    Hi,
    When a client accesses MBeans of more than one domains (Weblogic 8.1)
    that have
    different passwords, it receives a SecurityException. This occurs when
    the MBeanHome
    for each domain is looked up at initialization and reused for each
    request ( to
    access MBeans ). The security exception does not occur if the MBeanHome
    for each
    domain is looked up for each request. On initial review, this behavoir
    seems inconsistent.
    Looking up the MBeanHome for each request may introduce a significant
    overhead.
    I am not sure if concurrent lookups would also cause the same problem.
    I have read on another post that we can work around this problem by
    establishing
    a trust relationship between the servers, but this may not be feasible
    when one
    is monitoring a lot of servers and the overhead of configuration may be
    an issue.
    I have attached code that can reproduce the problem.
    Please advise on the correct approach.
    Thanks
    Dinesh Bhat
    Panacya Inc.
    import java.util.ArrayList;
    import java.util.Set;
    import java.util.HashMap;
    import java.util.Iterator;
    import java.util.Hashtable;
    import javax.management.MBeanServer;
    import javax.naming.Context;
    import weblogic.jndi.Environment;
    import weblogic.management.MBeanHome;
    * This class reproduces the Security Exception that is caused when a client tries to access
    * MBeans of more than one domain with different weblogic passwords. Here is the stacktrace of the
    * exception
    * java.lang.SecurityException: [Security:090398]Invalid Subject: principals=[weblogic, Administrators]
         at weblogic.rjvm.BasicOutboundRequest.sendReceive(BasicOutboundRequest.java:108)
         at weblogic.rmi.internal.BasicRemoteRef.invoke(BasicRemoteRef.java:138)
         at weblogic.management.internal.AdminMBeanHomeImpl_811_WLStub.getDomainName(Unknown Source)
         at WLSecurityTest.getWeblogicInfo(WLSecurityTest.java:140)
         at WLSecurityTest.runTest(WLSecurityTest.java:75)
         at WLSecurityTest.<init>(WLSecurityTest.java:66)
         at WLSecurityTest.main(WLSecurityTest.java:51)
         at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
         at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
         at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
         at java.lang.reflect.Method.invoke(Method.java:324)
         at com.intellij.rt.execution.application.AppMain.main(Unknown Source)
    Caused by: java.lang.SecurityException: [Security:090398]Invalid Subject: principals=[weblogic, Administrators]
         at weblogic.security.service.SecurityServiceManager.seal(SecurityServiceManager.java:682)
         at weblogic.rjvm.MsgAbbrevInputStream.getSubject(MsgAbbrevInputStream.java:181)
         at weblogic.rmi.internal.BasicServerRef.acceptRequest(BasicServerRef.java:814)
         at weblogic.rmi.internal.BasicServerRef.dispatch(BasicServerRef.java:299)
         at weblogic.rjvm.RJVMImpl.dispatchRequest(RJVMImpl.java:920)
         at weblogic.rjvm.RJVMImpl.dispatch(RJVMImpl.java:841)
         at weblogic.rjvm.ConnectionManagerServer.handleRJVM(ConnectionManagerServer.java:222)
         at weblogic.rjvm.ConnectionManager.dispatch(ConnectionManager.java:794)
         at weblogic.rjvm.t3.T3JVMConnection.dispatch(T3JVMConnection.java:570)
         at weblogic.socket.NTSocketMuxer.processSockets(NTSocketMuxer.java:105)
         at weblogic.socket.SocketReaderRequest.execute(SocketReaderRequest.java:32)
         at weblogic.kernel.ExecuteThread.execute(ExecuteThread.java:197)
         at weblogic.kernel.ExecuteThread.run(ExecuteThread.java:170)
    * Note: the exception is caused only when the MBeanHome for each domain is cached and used for subsequent
    * transactions. The exception does not occur if the MBeanHome for each domain is looked up for each transaction. This
    * would significant overhead in practice. Also the transactions across the various domains occurs serially, hence
    * the effect of concurrent lookups has to be tested.
    * Usage:
    * This class has been tested with weblogic 8.1
    * The class needs weblogic.jar in its classpath
    * One can specify the weblogic details as System properties. The properties need to be specified in
    * the following format:
    * wls.host.n, wls.userId.n, wls.password.n where n is the weblogix instance number. Also specify
    * the boolean system property reconnect.each.iteration to toggle between reconnecting or not reconnecting
    * for each iteration. When not reconnecting for each iteration, the MBeanHome is reused and the Security Exception
    * occurs.
    * Following is the example of system properties
    * -Dwls.host.0=localhost:7001 -Dwls.userId.0=weblogic -Dwls.password.0=weblogic
    * -Dwls.host.1=localhost:7011 -Dwls.userId.1=weblogic -Dwls.password.1=weblogic1
    * -Dwls.host.2=localhost:7021 -Dwls.userId.2=weblogic -Dwls.password.2=weblogic2
    * -Dreconnect.each.iteration=false
    public class WLSecurityTest
    ArrayList wlsDetailsList = new ArrayList();
    HashMap connectionMap = new HashMap();
    public static void main(String[] args)
    try
    WLSecurityTest wlSecurityTest = new WLSecurityTest();
    catch (Exception e)
    e.printStackTrace();
    * Constructor
    * @throws Exception
    public WLSecurityTest() throws Exception
    int noOfTries = 10;
    getWLSDetails();
    for( int i=0; i <= noOfTries; i++)
    runTest();
    * Runs the test
    private void runTest()
    for (int i = 0; i < wlsDetailsList.size(); i++)
    WLSDetails wlsDetails = (WLSDetails) wlsDetailsList.get(i);
    getWeblogicInfo(wlsDetails);
    * Get Weblogic details from System properties
    * @throws Exception
    private void getWLSDetails() throws Exception
    wlsDetailsList = new ArrayList();
    String hostKeyTmpl = "wls.host";
    String userIdKeyTmpl = "wls.userId";
    String passwordKeyTmpl = "wls.password";
    boolean done = false;
    for (int i = 0; !done; i++)
    WLSDetails wlsDetails = new WLSDetails();
    String hostKey = hostKeyTmpl + "." + Integer.toString(i);
    String userIdKey = userIdKeyTmpl + "." + Integer.toString(i);
    String passwordKey = passwordKeyTmpl + "." + Integer.toString(i);
    wlsDetails.hostName = System.getProperty(hostKey);
    done = (wlsDetails.hostName == null) || (wlsDetails.hostName.length() == 0);
    if (!done)
    wlsDetails.userId = System.getProperty(userIdKey);
    wlsDetails.password = System.getProperty(passwordKey);
    connect(wlsDetails);
    wlsDetailsList.add(wlsDetails);
    * Lookup the MBeanHome for the specified weblogic server
    * @param wlsDetails
    * @throws Exception
    public synchronized void connect(WLSecurityTest.WLSDetails wlsDetails) throws Exception
    Context ctx = null;
    MBeanHome mbHomeLocal = null;
    try
    Environment env = new Environment();
    env.setProviderUrl("t3://" + wlsDetails.hostName);
    env.setSecurityPrincipal(wlsDetails.userId);
    env.setSecurityCredentials(wlsDetails.password);
    Hashtable hashtable = env.getProperties();
    System.out.println(hashtable.toString());
    ctx = env.getInitialContext();
    wlsDetails._mBeanHome = (MBeanHome) ctx.lookup(MBeanHome.ADMIN_JNDI_NAME);
    catch (Exception e)
    e.printStackTrace();
    * Gets weblogic information using MBeans
    * @param wlsDetails
    public synchronized void getWeblogicInfo(WLSDetails wlsDetails)
    try
    boolean reconnectEachIteration =
    Boolean.getBoolean("reconnect.each.iteration");
    if( (reconnectEachIteration) || ((wlsDetails._mBeanHome == null) && (!reconnectEachIteration) ))
    connect(wlsDetails);
    MBeanHome mbHomeLocal = wlsDetails._mBeanHome;
    String domainName = mbHomeLocal.getDomainName();
    Set allMBeans = mbHomeLocal.getAllMBeans();
    System.out.println("Size: " + allMBeans.size());
    Set clusterMBeans = mbHomeLocal.getMBeansByType("Cluster", domainName);
    System.out.println(clusterMBeans);
    MBeanServer mBeanServer = mbHomeLocal.getMBeanServer();
    catch (Exception ex)
    ex.printStackTrace();
    * Class that holds weblogic server details
    class WLSDetails
    String hostName = "";
    String userId = "";
    String password = "";
    MBeanHome _mBeanHome = null;

    If Server version is 61.
    Make user "system" password of all weblogic servers same.
    If Server version above 61(70,81)
    In the Security Advanced Settings un check generated credential and specify a common credentail for all the weblogic servers(domains).

  • Wireless connection lost after macbook pro sleeps for more than 15 minutes

    It's annoying. I have a brand new macbookpro 3.06Ghz 17" hi-res screen running OS-X 10.6.3 and the wireless connection keeps dropping after the computer is either turned off or sleeping for more than 15 minutes.
    My router is a linksys wireless G, has dd-wrt software in it which is very powerful. When I release or renew the DHCP at the router, the mackbook connects to the wireless network, no problem.
    What configuration can be done at the macbook as to not have it time-out airport wireless connections unless I renew/release DHCP at the router? This is an annoyance beyond the limits of anyone's patience.... Thanks in advance for any help!

    Well, since nobody answered this post I decided to try a bunch of things and I believe I came to a solution:
    1 - Make airport the first connection under System Preferences->Network
    2 - In the advanced window:
    - Under AirPort: Keep only one network name on the list (the one you use all the time)
    - Select 'remember networks this computer has joined' and deselect all other boxes
    - Take note of the Airport ID (xx:xx:xx:xx:xx) and put it in your router's MAC address list. I do this because I only allow connections to my router from mac IDs that are on the list I create. In my case, I have my macbook pro and my PS3 system. If you don't know how to edit the MAC list in your router, do some research. It's pretty easy.
    - Under TCP/IP: Select "Using DHCP" on the IPv4 drop box
    - Select "Off" for IPV6 drop box
    - Under DNS, after you connect at least once, you should see (grayed out) your router's IP address on the left box and the domain on the right side box.
    Finally, under "Ethernet" you should see your Mac address there, the configure option should be set to Automatically and MTU as standard (1500).
    Press OK and then press "Apply" and lock that screen by clicking on the padlock at the bottom left. BTW on the top of this screen Location should be "Automatic" - if not, select it and apply.
    Done! Your wireless should connect quickly after the computer is turned on or waken up from sleep state. This assumes you configured your router correctly (mac addresses, frequencies, etc).
    Good Luck to all who try this - at least I have not have any more dropped wireless connections.
    Message was edited by: KEForex
    Message was edited by: KEForex

  • Cannot get Macbook Pro to internet for more than 5-8 minutes. Why?

    Greetings Apple board, this will be my first.
    I have recently bought a Macbook Pro and I love everything about it. The only problem I'm having with this laptop is connecting it to the internet for more than 5-8 minutes. I have two PC's in the house which are connected to the internet via wireless Linksys router. I'm not to tech-advanced so if somebody could explain step-by-step as to what to do, that'd be great and very much appreciated.
    A note: My Macbook works at other people's houses.

    Model #, have you updated the firmware? Are you using a security protocol? If so which? The other thing I would try is:
    System Preferences>Network>Advanced>DNS. Put the following in the DNS Servers box:
    208.67.222.222
    208.67.220.220
    hit OK. Then hit Apply
    The more pertinent info you provide as to your set up and what you have tried, the easy it is to help trouble shoot without going up and back.

  • Setting Equalizer for more than one song at a time

    Is there any way to set the equalizer setting for more than one song at a time. For example, if I have a classical music album with 10 songs, can I set the equalizer for "classical" for all 10 songs at once? It's a pain to have to do it for each one individually. I tried using the "shift" key, but to no avail.
    Thanks,
    Joe The Author

    highlight all the songs you want then right click and go to get info. in the options tab at the top there is an equalizer preset option.

  • HT4314 Can I have more than one Game Center account on the same Apple ID? If so, how do I set it up?

    I am playing Clash of Clans on my iphone and on my iPad. I would like to connect each of my games to a different Game Center ID so I don't lose them if something happens to my device, but I can't figure out how to do that without creating new Apple IDs for each device and I don't want to do that. Any advice? Can I have more than one Game Center account under the same Apple ID? If so, how do I set it up? Thanks!

    If you use the same account see the following to separate Messages and FaceTime between the two iPod see:
    MacMost Now 653: Setting Up Multiple iOS Devices For Messages and FaceTime

  • Setting color codes for more than one photo at a time

    Is there any way to set color codes for more than one photo at a time?

    Hi John,
    I will look at keywords. My issue is speed. Right now I am culling and editing an event shoot that spanned a week with 35 separate events and more than 5000 images. So I use the fastest most convenient method I can and it still takes a long time to have a completed and final shoot. On this shoot I will end up with a final set of around 1500 images. Right now I am finishing processing a show that will hang in the Deutsches Amerikanish Zentrum in Stuttgart.
    As I am sure you are aware by now, having seen enough of my inane questions that over the last two years or since Lightroom version 1.xx if I could not figure out how to do something I skipped it. So many things in Lightroom are buried and unless you have a mind like a steel trap (and think that some of you guys in the forum do) locating how to do something is not obvious.
    For example, I only learned (in the last hour) that I could assign colors as a group of selections by using Shift + number. I found this in a side head in Martin Evenings Lightroom book. I still do not know how to find a way to display the color filter "selection" set in Library mode. Is there a way?
    To top it off, Stuttgart Media University asked me if I would add a Lightroom module to my schedule this year. Now I have a compelling reason to learn all those missing pieces that I have created workarounds for. Hence the number of posts you have been seeing from me over the past few of weeks.
    I tell my class that there are no such things as stupid questions, only questions. Now I am practicing what I have been preaching for the last gazillion years. Guys like you have been great.
    My workflow is
    1. I first separate all images by event. I do that at the time of import.
    2. I do a fast pass rejecting all the obviously bad images
    3. I do a second pass grouping the images by sub-group (speeches, people talking, performances, etc.) This is where I run out of selection methods and your key-wording could work but it would probably take too much time to establish a keyword set for a single event. Where I have more than five subgroups I set up different collection sets with one collection for each sub group. However I would like to keep a single event in one collection.
    4. I then select the images to be used by color code.
    5. Next I process the final images (crop develop etc) by collection.
    6. Last I output the set according to client requirement.
    If you have a better workflow, I am all ears.
    By the way, what is your photo specialty and where are you located?
    Jim

  • Missing pictures and some with interference across them, following upload from Canon 60d

    I am getting intermittent images missing and some with interference across them, following upload from a Canon 60d into iPhoto 9.6. on my Macbook Pro.  I have uploaded the same pictures to my iMac 2006 and they are all fine.  Anybody got any idea as to what might be happening here?
    Thankyou
    Andy

    I am getting intermittent images missing and some with interference across them, following upload from a Canon 60d into iPhoto 9.6. on my Macbook Pro.  I have uploaded the same pictures to my iMac 2006 and they are all fine.  Anybody got any idea as to what might be happening here?
    Thankyou
    Andy

  • Manage more than 20 Airport Extreme, model A1354 in same broadcast domain

    Problem: manage more than 20 Airport Extreme, model A1354 in the same broadcast domain), firmware 7.5.1
    We have more than 20 Airport Extreme (A1354) in the same broadcast domain with firmware 7.5.1, now we can not manage them anymore (with airport Utilty)
    (Reading the Airport Extreme configuration...) An error occured while reading the configuration. (-6753). When moving one airport to another VLAN, there is no problem anymore. (only if we put more than 20 basestations in the same VLAN)
    With the old type basestations (firmware 5.7) there is no such problem! But we need the new one, can you confirm this problem and will there be a solution ?
    Client OS: 10.6.3 (Build 10D578)
    Airport Utility: 5.5.1 (551.19)
    Airport Extreme Base Station, Model Number: A1354, Firmware 7.5.1
    LAN: Private Lan /23 network
    Al clients have a dynamic IP adres, the Airport have a static IP adres (true ISC dhcp @3.1.2_0 server), we use bridge mode.
    We use SNMP, to monitor the airports (Nagios and MRTG)
    With Regards,
    John

    Welcome to the Apple discussion area!
    Your post appears to have specific questions directed to Apple. This is a user to user forum and there is no assurance that Apple will see your post. Even if they might, they do not respond on this forum
    Your best bet would be to contact Apple directly on your issue.

Maybe you are looking for

  • Business partner Customer is not created for Sales B Role in R/3

    Hi, I am trying to create Customer for a business partner associated with itin Tcdoe BP. I m giving the account management and Payment terms Tab details and clicking on SAVE button. The screen values are not retained and the Customer,Comapny code com

  • Tigerdirect & pdf don't work with foxfire

    I was having trouble getting a rebate info pdf to display from tigerdirect.com. only half the page displayed and the links therein did not work. after calling the company, they said to try internet explorer. it worked with IE. just thought you should

  • MB90 - Message no. VN108

    I am trying to take Print out for movement type 311 Sloc to Sloc i have completed following steps. In MB02 Selected output type ZWA3 and communication method for document (311) when using MB90 to process the output, the error " No messages for initia

  • How to play midi files

    i recently got some midi files but when i go to play them in logic they wont play it has a signal but no sound comes out just wondering how do i get it to play and also can i load these files into any synths and how would i go about doing that

  • How do i set up or remove pre-emptive text?

    how do i set up and remove pre-emptive text? == This happened == Every time Firefox opened