FAQ : IDEAL Administration | IDEAL Dispatch | IDEAL Remote | IDEAL Migration | IDEAL Alerter | IDEAL Secure


FAQ : IDEAL Administration

Centralized Administration for Windows Active Directory Domains and Workgroups

Windows Active Directory object and security (ACL) migration

How to enable/disable filtering for SIDHistory management?

I migrated the group and user SID, however, users can not access to their resources. They have a "Access denied" error message.

What's happen?


Try IDEAL Administration during 30 days on your network for free!

Manage SIDHistory (Reporting and Cleaning Functions) with IDEAL Administration

 

Enabling/disabling filtering mode for SIDHistory management

When you establish an approval relationship between two Active Directory domains, SIDHistory management is deactivated by default.

In this case, users do not have access to the data in the approved domain, and the same is true if the SIDHistories have been correctly migrated to the target domain.

You have the possibility of enabling or disabling the filtering mode by using the NETDOM command below:

  • Disabling filtering is equivalent to enabling SIDHistory management:
  • From the source domain:

    NETDOM TRUST SOURCE_DOMAIN/Domain:APPROVED_DOMAIN /Quarantine:No

    From the destination domain:

    NETDOM TRUST DESTINATION_DOMAIN /Domain:APPROVED_DOMAIN /Quarantine:No

  • Enabling filtering is equivalent to disabling SIDHistory management:
  • From the source domain:

    NETDOM TRUST SOURCE_DOMAIN /Domain:APPROVED_DOMAIN /Quarantine:Yes

    From the destination domain:

    NETDOM TRUST DESTINATION_DOMAIN /Domain:APPROVED_DOMAIN/Quarantine:Yes

     

    Also concerns the following software: IDEAL Migration
    Last modification: 04/10/2017
    << Previous   Next >>

    Back to the list of FAQs

     

    IDEAL Administration 19.5
    Download
    Free 30-Day Version
    Back to top