Start a Conversation

Unsolved

3 Posts

722

January 24th, 2019 05:00

Isilon: User authentication against two different ADS

Dear Isiloner-s,

We have OneFS 8.1.2.0 and we needed to authenticate the users on two domains: that the data can be accessible for users from both domains. For that we have configured two access zones each with own ADS domain as authentication provider and trust relationship between these domains (2-way).

In this case a user from one AZ can access the data of other AZ ONLY if he connects network disk manually via:

Computer -> Connect network disk, with credential options. Then he can see and access the shares of other ADS/Fileserver.

Otherwise via FQDN (SC name) to fileserver input he gets the error message like that network ressource unreachable

But:

If the trusts are taken out, the users from one domain are able to reach the fileserver from other domain/access zone simply via FQDN input: they get at once pop-up window with credentials.

Has anybody any idea about this case, what it could be:

- is it normal behavior looking like if there is a trust between domains and the access is more restricted than without trust?..

- or is it any error in SMB authentication of OneFS or probably in Active Directory structure?..

Thanks a lot.

Regards, Eka

No Responses!
No Events found!

Top