Products

Solutions

Resources

Partners

Community

Blog

About

QA

Ideas Test

New Community Website

Ordinarily, you'd be at the right spot, but we've recently launched a brand new community website... For the community, by the community.

Yay... Take Me to the Community!

Welcome to the DNN Community Forums, your preferred source of online community support for all things related to DNN.
In order to participate you must be a registered DNNizen

HomeHomeDNN Open Source...DNN Open Source...Provider and Extension ForumsProvider and Extension ForumsAuthenticationAuthenticationAD Authentication to another hostAD Authentication to another host
Previous
 
Next
New Post
2/25/2008 3:50 AM
 

Hi,

We have a server in a domain called ADOM but we need to authenticate against BDOM. using dc=bdom,dc=somewhere,dc=here does not work. Is there a way of specifiying a different host to authenticate to?  This is a managed server and i am not incontrol and cannot get it moved to another domain.


Any help appreciated.

 

 
New Post
2/25/2008 11:26 AM
 

Is there a trust between the domains or are they two completely seperate domains?

In my testing if the server wasn't part of the domain or there was at least a trust between them (so that I could use impersonation) it wouldn't work. This is part of the DirectoryServices class from Microsoft and it makes sense when you consider it.

 
New Post
2/25/2008 9:14 PM
 

Hi Mike,

First thanks for your prompt reply. I forwarded your questions to the server managers and this was the response:

"There is currently a selective one way trust. The users have been given authenticate access to the server (sufficient that IIS can authenticate the user against the other domain to provide access)."

Do you have any other recommendations that could make this work?

 
New Post
2/26/2008 12:39 AM
 

Is a user from BDOM allowed to have permissions set on a file on the server? IE: Can you create a simple text file in the DNN directory and then under the files security settings give read/write/modify/whatever to a user from BDOM? If you can then you should be able to use impersonation in your web.config to get it to work. Impersonation is covered in the provider documentation.

 
New Post
2/26/2008 10:48 PM
 

Hi Mike,

I dont know how the managed servers are setup but created a virtual lan with 3 domains and the server. Setup 1 way outgoing trust and used impersonation like you said. I found I did have to add this account to the local administrators box. Once this was done I was able to sign into the system using domain username and passwords.

Again, thanks for your prompt replies and confirming the direction I was going down. 

 

 
Previous
 
Next
HomeHomeDNN Open Source...DNN Open Source...Provider and Extension ForumsProvider and Extension ForumsAuthenticationAuthenticationAD Authentication to another hostAD Authentication to another host


These Forums are dedicated to discussion of DNN Platform and Evoq Solutions.

For the benefit of the community and to protect the integrity of the ecosystem, please observe the following posting guidelines:

  1. No Advertising. This includes promotion of commercial and non-commercial products or services which are not directly related to DNN.
  2. No vendor trolling / poaching. If someone posts about a vendor issue, allow the vendor or other customers to respond. Any post that looks like trolling / poaching will be removed.
  3. Discussion or promotion of DNN Platform product releases under a different brand name are strictly prohibited.
  4. No Flaming or Trolling.
  5. No Profanity, Racism, or Prejudice.
  6. Site Moderators have the final word on approving / removing a thread or post or comment.
  7. English language posting only, please.
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out