second domain tree

I'm trying to add a second domain tree in an existing forest. It's a single domain forest with only one domain controller, and one DNS server.
Both servers run Windows 2003, and the 3rd will also run Windows 2003, I'm using server roles to install AD as normal, and I choose the "domain in existing forest" option, but I am having problems with the part where I am asked about network creditials. It makes sense that I have to input login and password + domain information from my existing forest, however, it's returning an error all the time that it's not locating the domain (the existing one).
I've tried to install DNS service on the new (3rd) machine and forward requests to the existing DNS server, and I've also tried to add a secondary zone to transfer from the DNS server in the existing forest, but it's complaining that the transfer fails. Zone transfer is enabled, and security rights are set properly.
Does anyone have any ideas?
Both servers run Windows 2003, and the 3rd will also run Windows 2003, I'm using server roles to install AD as normal, and I choose the "domain in existing forest" option, but I am having problems with the part where I am asked about network creditials. It makes sense that I have to input login and password + domain information from my existing forest, however, it's returning an error all the time that it's not locating the domain (the existing one).
I've tried to install DNS service on the new (3rd) machine and forward requests to the existing DNS server, and I've also tried to add a secondary zone to transfer from the DNS server in the existing forest, but it's complaining that the transfer fails. Zone transfer is enabled, and security rights are set properly.
Does anyone have any ideas?
Jack of all trades, master of none
Comments
This help?
Then I realized......I have RRAS enabled on the DC for NAT, the basic firewall was not configured to allow incoming AD traffic......sigh...
Thanks again!