A user wanted guidance on ControlUp in multi-forest AD with selective authentication two-way trust. The license is tied to the AD domain, as long as DNS resolution is available from the monitors and console, the AD forests don’t matter. As the accounts will be migrated in phases, a trust needs to be set up in ControlUp. Further, the account team needs to be contacted to iron out any licensing issues. Documentation on setting up multi-domain environment can be found at https://support.controlup.com/docs/setting-up-a-multi-domain-environment.
Read the entire ‘Configuring ControlUp in Multi-Forest AD with Selective Authentication Two-Way Trust’ thread below:
Hey folks, trying to find some guidance, documentation for ControlUp in multi forest AD with selective authentication two way trust. We have two forests one for server computer objects and another for user/workstation objects. I’ll need to plan migration of the org to the new AD forests
Are all the user accounts moving or are they staying in the same forest?
The license is tied to the AD domain of the user. As long as you have DNS resolution from the monitors and console to the managed machines, the AD forests don’t matter.
As for documentation, here you go. I don’t think you’ll need it if your user accounts are in the same domain. https://support.controlup.com/docs/setting-up-a-multi-domain-environment
Migration to new domain will be in phases, currently user accounts are created in new and legacy domain. Legacy domain trusts the new domain but the trust has selective authentication enabled,
Ok, well all this only applies to the user forest of users that use the fat console. Once they move from domain to domain you need a "trust" in ControlUp using the link above to make your organization available to the users in the new domain. You’ll also need to get with your account team as there are licensing issues to iron out as well.
Continue reading and comment on the thread ‘Configuring ControlUp in Multi-Forest AD with Selective Authentication Two-Way Trust’. Not a member? Join Here!
Categories: All Archives