Consider the following scenario:
            - You enable selective authentication over a trust between two Active Directory forests.
 - You use a user account from one Active Directory forest to access a resource server in another Active Directory forest.
 - NTLM authentication is used in and between these two Active Directory forests.
 - The resource server has a security channel to a Windows Server 2008 R2-based read-only domain controller (RODC).
 - There is no read/write domain controller (RWDC) in the closest site to the RODC.
 - The computer password of the resource server is changed.
 
- When you access the resource server, you receive the following error message:Access denied
 - You are prompted repeatedly to input your user name and password.