I have my parent domain lets call it parentdomain.com
I have my child domain lets call it childdomain.com
I am running Windows 2000 Server with latest SP and all updates on the primary DC in parentdomain.com, and Win2k3 Server with SP2 and all updates on the primary DC in childdomain.com
I need to assign a user in childdomain.com to a security group in parentdomain.com called FINANCE_FOLDER. Used to be I could just pull up Active Directory Users and Computers in the DC in the child domain and go to the properties of the user, click on Member Of, and Add, then click Locations and it would display my entire tree like this for example.
Parentdomain.com
Accounting
Construction
Finance
Payroll
Childdomain.com
Accounting
Construction
Finance
Marketing
Payroll
So I could just click on Parentdomain.com and do a search for FINANCE_FOLDER and it found it and I could add it. Now the tree looks like this when doing this from the child domain:
Childdomain.com
Accounting
Construction
Finance
Marketing
Payroll
So now I no longer can do that because now that tree under locate only allows me to search in the childdomain.com, so I can't search or add security groups that exist on the parent domain anymore to people on the child domain. Also it doesn't list users security groups that they have assigned from the parent domain like it used to. So say I have a user Joe Blow on the child domain whom I know has always been assigned to a group parentdomain.com\FINANCE_FOLDER that exists on the parent domain, it no longer shows he's assigned to it in the Member Of tab. Oddly enough though, if I open up AD Users and Computers on the DC controller in parentdomain.com, even though it also no longer shows childdomain.com in the tree like it used to either, if I do a search for a users, it lets me select childdomain.com and actually find and display a user on the child domain, and it shows his security groups from both domains there. However it won't find security groups from the childdomain.com like it used to either so I can't assign him to new groups from there like I should and used to be able to.
I hope this makes sense, I know it's long winded but I really need this fixed as it's been broke like this for about a week now and I have some users that I currently need to add to groups from the other domain right now and can't until this is fixed. Hopefully somebody has experienced this and can help me fix or point me in the right direction
Thanks in advance.