Techlog
Configuration Manager AD system discovery will not work across external trusts starting with Service Pack 2

After upgrading to SCCM 2007 SP2, AD discovery methods will fail to bind across external trusts.

The failure occurs because of a change made in Service Pack 2 which makes the product more secure by requiring authentication for AD binds. As discovery is performed by the site server System account, authentication on the network requires Kerberos which is not supported across external trusts.(continue at source)

Back to main menu