Please tell me if this is the best way of doing this. I have a new SLES server running SAMBA with a ldap backend and acting as PDC for DomainB. I would like DomainA's ADS users to have permission to read and write to my SAMBA shares. Eventually all the users will be migrated to DomainB, but in the short term they just need permission to read and write. I tried to establish a one way trust relationship which might be working but how do I tell SAMBA or the LDAP backend to allow the users from DomainA? Do I add the users to the LDAP? Create a write list of user@DomainA.com? Thank you all for your comments. ./todd