Domain Trust Vs Forest Trust
In windows 2000 and 2003 a forest can contain multiple domains.
Domain trust vs forest trust. The main difference between forest trusts and external trusts is that with forest trusts you re setting up internal trusts between domains of the same forest. External trusts can be one way or two. Forest trusts help you to manage a segmented ad ds infrastructures and support access to resources and other objects across multiple forests. Just as in previous versions of the windows server operating system windows server 2003 trusts allow network.
With a single sign in process accounts with the proper permissions can access resources in any domain in the forest. The user should be able to log on with his credentials from domain a in domain b that s the whole idea of trusts. Trusts which are created automatically are called as implicit trusts and the trusts which are created manually are called as explicit trusts. A one way outgoing trust allows authentication requests that are sent by users in the other domain the domain or forest that you are indicating in the new trust wizard as the specified domain or forest to be routed successfully to resources in your domain or forest.
Active directory trust relationship is a logical link which allows a domain to access another domain or a forest to access another forest. Typically these types of trusts are most often used for migrations. An external trust is a trust relationship in which a domain within your forest trusts a domain that does not belong to the forest. A trust creates the framework that governs domain to domain or forest to forest relationships.
Forest is a collection of trees or domain trees while the domain is a set of active directory objects. The following are the characteristics of windows 2003 trusts. A trust allows users in different domains or forests to access resources in other domains or forests based on the trust that is established.