Forest Trusts
Forest trust relationships provide security across multiple Active Directory forests. Before you can authenticate across trusts and migrate folders from one forest to another, Windows must first establish a trust path between the forests.
Forest Trusts Overview
File Dynamics has limited support for forest trusts for Target-Driven content control policies (Copy, Move, and Vault policies) and for managing storage resources in another forest. The trust cannot be leveraged to monitor for events in another forest.
After a forest trust is configured for use, you will need to grant the proxy account appropriates rights and permissions to shares on servers in the trusting forest. This is the same process used for granting access to servers where Agents have not been deployed in the primary forest. See Granting Access to Managed Storage in the File Dynamics 24.1 Installation Guide for details.
Supported Trust Models
Active Directory provides a number of configurations for forest trusts. File Dynamics currently supports only forest-wide one-way incoming and two-way forest trust models.
| Trust Type | Direction | Scope of Authentication | Supported |
|---|---|---|---|
| External | One-way or two-way | Selective or Forest-wide | No |
| Forest | One-way or two-way | Selective | No |
| Forest | One-way incoming or two-way | Forest-wide | Yes |
| Shortcut | One-way or two-way | Selective | No |