Supporting user authentication for multiple domains

You install the connector on a host Windows computer that is joined to a domain controller to authenticate Privileged Access Service users who have an account in that domain. If you want Privileged Access Service to authenticate users in other domains, there are two connector installation models—which one you use depends upon whether the accounts are in trusted domains in a single forest or in multiple, independent domain trees or forests.

Note:   If all of your Privileged Access Service users have their accounts in a single domain controller, you can skip this topic.