Hi, I am writing an application that automatically populates our AD with accounts and groups from the student records and HR systems. I can create users and groups and add users to groups if they are in the same domain, but have not yet figured out how to do it if the group is in domain A and the user in domain B and there is a two way trust between domains A & B. From the GUI it is easy and I see that an entry gets created in cn=foreignsecurityprincipals. However when I try to create this entry from via ldap calls I get a "will not perform" error and if I just try to add the SID of the user to the group I get a "no object" error.
Thanks for your advice. cheers, ski -- "When we try to pick out anything by itself, we find it connected to the entire universe" John Muir Chris "Ski" Kacoroski, [EMAIL PROTECTED], 206-501-9803 or ski98033 on most IM services and gizmo ~ Upgrade to Next Generation Antispam/Antivirus with Ninja! ~ ~ <http://www.sunbelt-software.com/SunbeltMessagingNinja.cfm> ~