|
Post by dunzee on Sept 23, 2022 12:20:38 GMT
I got a setup where I have domain A and B in two way trust.
Got admin users in both domains, so I set the drop down to contain the two domains I have. However, the group I want to check them against is ONLY in domain A. I cannot figure a way to authenticate the membership against it.
This group is Universal.
I found one partial workaround, but it's a bit weird.
If I set A.contoso.com and B.contoso.com in my list, as well as contoso.com (the 'root'), then I set in the auth action Domain="contoso.com" then it will fail first to authenticate (as my user is in B)... but then I select the correct B domain, and then it will somehow go through, but I guess this is just tricking the odds. Not an official way
|
|
|
Post by geeksbsmrt on Nov 9, 2023 21:27:28 GMT
I've got this exact scenario.
We have multiple different forests and domains, each having their own different Admin groups. Some domains have more than 1 group that need access to this specific app, so there are more groups than domains. My working UserAuth is:
<Action Type="UserAuth" Title="User Authentication" Group="group1;group2;group3;group4;group5;group6;group7" GetGroups="True"> <Field Name="Username" RegEx="[\w\-_.]+"/> <Field Name="Domain" List="domain1,domain2,domain3,domain4,domain5" Question="Technician's Domain"/> </Action>
|
|