Windows 2003 AD and Authentication Domains

  • Thread starter Wallace, David K.
  • Start date
W

Wallace, David K.

I would like to create an additional authentication domain, but not a
physical domain with domain controllers etc.

My tree looks like this.

toplevel.com
dv.toplevel.com
corp.toplevel.com
pd.toplevel.com

I would like to create a "customers.toplevel.com" authentication domain to
allow some of my customer facing web applications to authenticate to Active
Directory, but I would them in a separate tree. Is there a way of doing
this?

Many thanks

David
 
J

Joe Richards [MVP]

An authentication domain is going to require a physical domain unless you are
simply thinking about setting up some UPNs for users that exist in one of the
other domains. You can set a user's UPN to pretty much anything you want. For
instance you could have (e-mail address removed)
 
W

Wallace, David K.

I'm looking for a seperate LDAP tree in Active Directory. I want to
seperate Tree from my corporate users to put my external customers in the
tree so they can log into our web site.

Does that make sense? I don't want any domain controllers in this domain,
just users.

THanks
David
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top