Design Considerations for Active Directory ReplicationDesign Considerations for Active Directory Search and Global CatalogsSearching the TreeAccessing the Global CatalogDesignating Global Catalog ServersDesignating Replication AttributesDesign Considerations for CompatibilityUnderstanding Domain Functional LevelUnderstanding Forest Functional LevelRaising the Domain or Forest Functional LevelDesign Considerations for Active Directory Authentication and TrustsUniversal Groups and AuthenticationUnderstanding Security Tokens and Universal Group Membership CachingEnabling Universal Group Membership CachingNTLM and Kerberos AuthenticationEstablishing the Initial AuthenticationAccessing Resources After AuthenticationAuthentication and Trusts Across Domain BoundariesTwo-Way Transitive TrustsShortcut TrustsAuthentication and Trusts Across Forest BoundariesExamining Domain and Forest TrustsEstablishing External, Shortcut, Realm, and Cross-Forest TrustsVerifying and Troubleshooting TrustsDelegating AuthenticationDelegated Authentication EssentialsConfiguring Delegated AuthenticationConfiguring the Delegated User AccountConfiguring the Delegated Service or Computer AccountDesign Considerations for Active Directory Operations MastersOperations Master RolesUsing, Locating, and Transferring the Schema Master RoleUsing, Locating, and Transferring the Domain Naming Master RoleUsing, Locating, and Transferring the Relative ID Master RoleUsing, Locating, and Transferring the PDC Emulator RoleUsing, Locating, and Transferring the Infrastructure Master RoleSeizing Operations Master Roles