Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Richard_Farnham
Participant

Identity collector account across domain Trust?

Hello I can't figure out, how to use an account in another domain to access the logs on a DC with Identity Collector. We have one main company AD forest and some domains outside with bidirectional domain trust, say -> main domain: company.biz -> some domain: other.biz other.biz is not in the same forest as Company.biz, however there is a domain trust in both directions. Now if I use an account in other.biz to access the DC of other.biz, everything works fine. But no matter how I enter an account of company.biz there always is an auth. failure (tried company\account , company.biz\account, account@company.biz). Account is member of [Event Log Readers] group in other.biz. What am I missing here (every idea welcome)??
0 Kudos
3 Replies
PhoneBoy
Admin
Admin

Why is it's not acceptable to use an account from other.biz to pull logs from other.biz?
0 Kudos
Richard_Farnham
Participant

Well, this will be our workaround? Its main drawback is administrative overhead: in my case there is a bunch of bidirectionally trusted external domains, which then each requires a own account with own pwd Change and maybe different conventions in naming/pwd complexity.. . And there is in fact no technical reason that prohibits the use of one central account.
0 Kudos
PhoneBoy
Admin
Admin

It was a question, that's all.
Not sure it's a limitation specifically, but maybe @Royi_Priov can comment.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events