Consider the following scenario:
- You enable selective authentication over a trust between two Active Directory forests.
- You use a user account from one Active Directory forest to access a resource server in another Active Directory forest.
- NTLM authentication is used in and between these two Active Directory forests.
- The resource server has a security channel to a Windows Server 2008 R2-based read-only domain controller (RODC).
- There is no read/write domain controller (RWDC) in the closest site to the RODC.
- The computer password of the resource server is changed.
- When you access the resource server, you receive the following error message:Access denied
- You are prompted repeatedly to input your user name and password.