Establish broken Trust Relation in forest

Dear All

There was no communication in between Parent and child domains for entire night due to some firewall issue, because of which the replication in between sites does not happened and the trust relationship has broken between parent and child domain.

Following problems has been faced during broken trust relationship.

  1. Outlook was continuously asking for username and password and even after providing correct credentials it was not communicating with exchange server which is in parent domain.
  2. Nobody is able to access any network system using NetBios.

The main issue was on child domain it was not allowing to login the user with enterprise & schema admin rights which could helped to repair the trust relationship .

To resolve the issue we have put in lot of efforts with various techniques and the final solution worked is as follows

Step 1

  1. On Parent Domain controller ( where the PDC role exists ) installed ADSIedit tool
  2. From ADSIedit snap-in explore cn=system folder from left panel and delete CN=mkcl.mkclindia.local class TrustedDomain key from right panel

Step 2

  1. Explore cn=Users from left panel in ADSIedit snap-in and delete CN=MKCL$ class user from right panel

 

 

Step 3

  1. On Child Domain controller ( where the PDC role exists ) installed ADSIedit tool
  2. From ADSIedit snap-in explore cn=system folder from left panel and delete CN= mkclindia.local class TrustedDomain key from right panel

 

 

Step 2

  1. Explore cn=Users from left panel in ADSIedit snap-in and delete CN=MKCLINDIA$ class user from right panel

 

Now Restart both the servers parent domain controller and child domain controller.

After restarting both the servers on parent Domain controller open Active Directory Domains and Trusts snap-in

In the Domain and trusts Snap-in -> right on Parent domain and select properties

In the Trusts windows we will not see the trust name between child and domain so to create a new trust click on new trust and provide the appropriate credentials which will establish new trust relationship between parent and child domain.

Thanks

Prashant Deshpande

 

 

Advertisements

4 Comments

Filed under Uncategorized

4 responses to “Establish broken Trust Relation in forest

  1. Undeniably believe that which you stated. Your favorite justification appeared to be at the
    web the simplest thing to understand of. I say to you, I definitely get irked
    whilst folks think about issues that they just do not realize about.

    You controlled to hit the nail upon the highest as neatly as defined out the whole
    thing with no need side-effects , people can take a signal.
    Will likely be back to get more. Thanks

  2. Spot on with this write-up, I honestly think this web site
    needs a great deal more attention. I’ll probably be returning to read more, thanks
    for the information!

  3. Que tal,
    Es interesante el articulo. Alguno de los articulos no
    me convencen demasiado, pero en general son bastante buenos.

    😉

  4. It’s a pity you don’t have a donate button! I’d certainly donate to this brilliant blog!
    I suppose for now i’ll settle for bookmarking and adding your RSS feed to my Google account.

    I look forward to new updates and will share this site with my
    Facebook group. Talk soon!

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s