Hi All,
My company has 2 different "divisions" in the country. One arm has a large AD structure with a large forest and ~30 domains so it's managed VERY tightly. One of the domains in that forest is now my "responsibility". Let's call that domain"abc.my.company.com"
The other "division" currently has a single forest and domain. Additional domains will be added down the track, but just one at this stage. Let's call this domain thecompany.com (not it's NOT the same domain as above).
In an ideal world, the domain that is now my responsibiltiy would be "rebuilt" to be a sub domain of "thecompany.com" however there is NO chance of this happening.
I was looking at setting up a trust between the 2 domains as technical staff need to be able to work on both domains. Technical staff will "live" (as in be members of) "thecompany.com) domain (the second entry above)
What i was thinking was to setup a trust between the 2 domains, HOWEVER i don't want there to be any access from "thecompany.com" to the parent domain of "company.com". Also, due to some SERIOUS change control's and procedure's, IF I need to involve the people responsible for that domain, i'll be lucky to have anything done by the end of 2014.
CAN i create a trust between the 2 domain's that ONLY applies directly to the 2 domains? If so, what are the requirements, EG
- Domain & Forest functional levels
- DC versions (there’s currently a mix of 2003, 2008 & 2008 R2)
- Domain access (as I said I have NO access to the parent domain of the 1<sup>st</sup> domain above)
- Anything else I should know/consider?