Ask a questionAsk a question
 

QuestionManage Multiple Forests with Forefront Stirling?

  • Tuesday, April 14, 2009 8:40 PMlforbes Users MedalsUsers MedalsUsers MedalsUsers MedalsUsers Medals
     
    We just purchased an organizational wide site license for Stirling Client Security. However, we run multiple domains in multiple forests. Becoming a single domain is impossible and a single Forest may be years away yet.

    We do not want to have to purchase server software for each Domain (we have more than 50).

    With Norton Corporate the client and the server were the same cost and the server required minimal work on our part past install.

    Will Stirling be able to go cross Domain? We can point to a WSUS without issue and even to have the Client Standalone with a Group Policy ADM to point to the WSUS Server and make the minor settings would be fabulous.

    Cheers,
    Lara
    lforbes

All Replies

  • Friday, May 08, 2009 9:53 PMChris Sfanos - MSFTMSFTUsers MedalsUsers MedalsUsers MedalsUsers MedalsUsers Medals
     
    Hi Lara
    Forefront Client Security (FCS v1) and Forefront codename Stirling (of which FCS v2 is a part) support cross-forest management when their is a two-way cross-forest trust.  This is required so the MOM 2005 agent can authenticate with the MOM 2005 server (and vice-versa: Mutual Authentication).  Cross-domain support is the same way - you need a two-way trust between the domains for authentication.  You can have a FCS v1 server in Domain A and agents in Domains A to F.

    Hope this helps

    Thanks
    Chris
    Forefront Stirling PM
    Chris Sfanos / Forefront PM
  • Tuesday, June 30, 2009 5:31 PMMGMNVA Users MedalsUsers MedalsUsers MedalsUsers MedalsUsers Medals
     


    Chris,

     As far as deploying policies to different Forest with a two way trust, do you still need to manually copy policies from one forest to another? Or does sterling allow you to manage and deploy polices from the managment console?

    Thanks,

    Mark