Establishing Required Trusts for Your Migration

Applies To: Windows Server 2003, Windows Server 2003 R2, Windows Server 2003 with SP1, Windows Server 2003 with SP2

Before you can migrate accounts and resources from a source domain to a target domain in a different Active Directory forest, you must ensure that the appropriate trusts exist between the forests. Trust relationships between the forests that you are restructuring enables ADMT to migrate users and service accounts and translate local user profiles from the source to the target domains. In addition, trust relationships enable users in the source domains to access resources in the target domains, and users in the target domains to access resources in the source domains that have not yet been migrated.

To migrate users and global groups, you must establish a one-way trust between the source domain and the target domain, so that the source domain trusts the target domain.

To migrate resources or translate local profiles, you must do one of the following:

  • Create a one-way trust between the source domain and the target domain.

  • Create a two-way trust between source and target domains.