Matthew, a strategic systems consultant at Quest Software, discusses the capabilities of GPOADmin in managing multiple domains across different forests. He explains that a single instance of GPOADmin can cover all domains within a forest without needing special installation, as long as appropriate trust relationships are in place. For external forests, GPOADmin's functionality depends on the type of trust established; full support is available with bi-directional trust, while one-way trust allows most capabilities but limits certain functions like security filtering. In cases where no trust exists, separate GPOADmin instances can be set up to manage different domains, allowing for reporting and synchronization of Group Policy Objects (GPOs) across untrusted forests. Matthew also provides a practical example of integrating GPOADmin with a foreign domain using registry modifications. Overall, he emphasizes the flexibility and utility of GPOADmin in complex organizational structures.
You need to be signed in and under a current maintenance contract to view premium knowledge articles.
© 2024 Quest Software Inc. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center