Management trust to the tenants.


been thinking bit..

is valid solution:

lets i'm working @ cloud provider hosts , manage company's active directory's. tenant have own forest. have each domain admin account in forest. valid/good solution have "management trust"; administrators have accounts, instead of accounts in domain. 

or there better way manage it?

"technically", can create domain/forest trust , provide domain permission. acceptable tenants? though, domain trust doesn't provide permission default, don't want see company's trust in ad domain.  

santhosh sivarajan | houston, tx | www.sivarajan.com
itil,mcitp,mcts,mcse (w2k3/w2k/nt4),mcsa(w2k3/w2k/msg),network+,ccna

my books: | windows server security | windows server 2012

blogs | twitter | linkedin | facebook|

posting provided no warranties, , confers no rights.



Windows Server  >  Directory Services



Comments

Popular posts from this blog

Error: 0x80073701 when trying to add Print Services Role in Windows 2012 Standard

Disconnecting from a Windows Server 2012 R2 file sharing session on a Windows 7,8,10 machine

Windows 2016 RDS event 1306 Connection Broker Client failed to redirect the user... Error: NULL