Administer AD users and computers in another forest or domain

Administer AD Users and Computers in another Forest or Domain with this tip.

This tip was submitted to the SearchWin2000 Tip Exchange by member Denise Banh. Let other users know how useful...

it is by rating the tip below.


When accessing the program to administer the AD user and computers in a different forest than the one your're on, create a shortcut icon on the desktop with the command syntax as follows:

  • runas /netonly /user:domainusername "command"

For example:

  • runas /netonly /user:microsoft.comjohndo "mmc.exe dsa.msc"

The domainusername must be a user with sufficient permissions to administer the domain. When prompted, type the account password. The command will not work if the DNS is not set up correctly in the reader's environment.

With this shortcut, you can administer the AD Users and Computers on domain A while your PC is logged into domain B. The DNS name resolution must work correctly. If you are on a machine in domain "A", you will need to be able to resolve the "srv" records for domain "B" -- in order to then connect my admin tools to domain "B".

This was last published in August 2002

Dig Deeper on Microsoft Active Directory Design and Administration

PRO+

Content

Find more PRO+ content and other member only offers, here.

Start the conversation

Send me notifications when other members comment.

By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

Please create a username to comment.

-ADS BY GOOGLE

SearchServerVirtualization

SearchCloudComputing

SearchExchange

SearchSQLServer

SearchWinIT

SearchEnterpriseDesktop

SearchVirtualDesktop

Close