Solved! Go to Solution.
Yes, you can have multiple different domains that you source users from, however, the configuration needs to include the necessary registered LDAP servers to source all of the users that you will need to have as MDE users but you must make sure that you don't have more than one registered server that can source the same user(s), otherwise you can create a situation where there are duplicate users.
Another consideration is going to be duplicate user names. For example, if you have two domains and in domain 1 there is a user named Bob Smith who has the samaccountname of "bsmith" and in domain 2 there is a user named Brian Smith who also has the samaccountname of "bsmith" there can be confusion and issues there since there will potentially be two "bsmith" user accounts even though they are truly different users.
An additional item that I must note is that, for the most part, we want to avoid deleting any registered LDAP servers as that has the potential to leave user objects as orphaned objects and also has the ability to create duplicates.
The subject of migrating any of your existing LDAP users to a new domain is a different subject entirely but it doesn't seem that is a subject at hand here. If I'm mistaken, please let me know.
Yes, you can have multiple different domains that you source users from, however, the configuration needs to include the necessary registered LDAP servers to source all of the users that you will need to have as MDE users but you must make sure that you don't have more than one registered server that can source the same user(s), otherwise you can create a situation where there are duplicate users.
Another consideration is going to be duplicate user names. For example, if you have two domains and in domain 1 there is a user named Bob Smith who has the samaccountname of "bsmith" and in domain 2 there is a user named Brian Smith who also has the samaccountname of "bsmith" there can be confusion and issues there since there will potentially be two "bsmith" user accounts even though they are truly different users.
An additional item that I must note is that, for the most part, we want to avoid deleting any registered LDAP servers as that has the potential to leave user objects as orphaned objects and also has the ability to create duplicates.
The subject of migrating any of your existing LDAP users to a new domain is a different subject entirely but it doesn't seem that is a subject at hand here. If I'm mistaken, please let me know.
Corporate Headquarters
6220 America Center Drive
San Jose, CA 95002 USA