Quantcast
Channel: Windows PowerShell forum
Viewing all articles
Browse latest Browse all 21975

Get-ADGroupMember - Trusted Domain User Accounts

$
0
0

I have several two way domain trusts at the moment and I think I'm hitting some type of resource problem or timeout when using Get-ADGroupMember on domain local groups that contain user accounts from the trusted domains. 

I can only get the cmdlet to work while I'm using Powershell (v2 or v3) on a domain controller (2008R2 and 2012 systems) in my root/primary domain.  If I use another member server of my root domain I get an error message that "FullyQualifiedErrorId : A local error has occurred,Microsoft.ActiveDirectory.Management.Commands.GetADGroupMember".  If I use ADUC on that same member server it resolves the names without a problem.  Using get-adgroupmember on member servers for AD groups without user accounts from trusted domains works as expected.  I've tried bumping up the Kerberos size limit to the maximum on my member server and validated the trusts but no change.

Any ideas are appreciated, thanks.


Viewing all articles
Browse latest Browse all 21975

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>