Forum Discussion
aero2466
May 29, 2020Brass Contributor
Active Directory on-premise, basic rules.
Hello everyone! Not sure this is correct place to ask but i didn't found more suitable group. I want to ask a question regarding Active Directory groups basics. Everyone remember the rule: if we have...
- Jun 01, 2020
Found the article https://docs.microsoft.com/en-us/openspecs/windows_protocols/ms-authsod/d3ca79c3-0386-42f8-979b-4376977dcd5e
This groups named "nested", and this thing called to simplify AD administration. But not any technical limitations for this.
aliat_IMANAMI
Jul 22, 2021Brass Contributor
Yes, this is more like a best practice for managing users in AD Groups .
The limitation is trying to add a User from Forest A into a Group that is in Forest B. Most of the deployments keep users in a Single Domain and Groups in another Domain within the Same Forest of Active Directory. Hope this helps answer the question.