some questions about DPM 2012 SP1 RRS feed

  • Question

  • Hi

    1. why is it  necessary to establish two way trust between DPM Domain and another domain? as for the security consideration we establish one-way trust
    2. why both domains must be in Windows Server 2008 forest mode ?  as our domain in Windows Server 2008 forest mode  and DPM Domain in Windows Server 2003 forest mode?


    Ramy Shaker

    Thursday, February 21, 2013 1:52 PM


  • Hi,

    DPM 2012 network requirements are documented here:

    Some workloads require DPM to have read / write access to Active Directory which would require a 2-way trust.  Other workloads can be protected using Certificate or Lanman authentication when no 2-way trust can be established.   The PS and DPM server do not need to be at the same forest level, just any ones of the three.  

    Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread. Regards, Mike J. [MSFT] This posting is provided "AS IS" with no warranties, and confers no rights.

    Thursday, February 21, 2013 6:38 PM