Tech Support > Operating Systems > Windows 2003 > error 1311 when creating cross-forest trust relationship
error 1311 when creating cross-forest trust relationship
Posted by Julio on February 24th, 2004


Hi all,

We want to share resources beetween two domains controlers
in different forests.

The two sites that want to establish the trust relation,
both use Windows 2003 server standard edition each one
working as forest root domain.

We work on a hardware VPN implementation, so we can ping
each subnet.
One site: 192.168.11.x - 2 Mb WAN link
other site: 192.168.10.x - 512 Mb WAN link

We've been trying this:
Both servers have configured the DNS for LAN name resolver
and add forwarders to the other site.

When tried to establish a forest two-way trust relation
with admin credentials we got the error:

* The verification of the incoming trust failed with the
following error(s):
The trust password verification test was inconclusive.
A secure channel reset will be attempted.
The secure channel reset failed with error 1311: There are
currently no logon servers available to service the logon
request.

Any Step by Step guide known.
Some help will be appreciated.

Thanks to thinking people


Posted by Ulf B. Simon-Weidner [MVP] on February 26th, 2004


Julio says...

what OSs are running on both sides of the trust?

Try to implement a lmhosts file with 1B & 1C records.

The following article will help you to set up the lmhost files:
http://support.microsoft.com/?id=180094

Gruesse - Sincerely,

Ulf B. Simon-Weidner


Similar Posts