I am in the middle of an office migration and I have hit a brick wall and I
really need all your help...
Source domain NT4
Target domain w2k3r2
The source account is in the target domains Built in Administrators group so
should have total rights over the target domain.
When running the ADMT wizard it completes but doesn't create the computer
object. As the account is in the Administrators group I haven't needed to
delegrate the permissions to the OU.
[Settings Section]
Task: Computer Migration (29)
ADMT Console
User: CBEASG\GADMBRYAN
Computer: cbegbrasgdc01.c (CBEGBRASGDC01)
Domain: cb.winadroot.com (CB)
OS: Microsoft Windows Server 2003 R2 5.2 (3790) Service Pack 2
Source Domain
Name: CBEASG
DC: CBUKHX01
OS: Windows NT 4.0
Target Domain
Name: cb.wi.... (CB)
DC: cbegbrasgdc01 (CBEGBRASGDC01)
OS: Windows Server 2003 5.2 (3790) Service Pack 2
OU: LDAP://cb.winadroot.com/OU=Workstations,OU=EMEA-G...
Intra-Forest: No
Translate Option: Add
Translate Files: Yes
Translate Local Groups: Yes
Translate Printers: Yes
Translate Registry: Yes
Translate Rights: Yes
Translate Shares: Yes
Translate User Profiles: Yes
Conflict Option: Ignore
Perform Pre-check Only: No
[Object Migration Section]
2009-04-29 11:18:15 Starting Account Replicator.
2009-04-29 11:18:35 ERR3:7585 The account replicator is unable to continue.
Access is denied.
2009-04-29 11:18:35 Operation completed.
[Agent Dispatch Section]
Make sure that the user account you logged on to run ADMT is added into following
groups:
- Local Administrators group.
- Target Domain Admin group
- Source Domain Admin group
Best regards
Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
Also make sure you can verify the trust:
http://technet.microsoft.com/en-us/library/cc753821.aspx
Best regards
Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
The source domain admins account is running the ADMT as a runas
I get the same result if I log onto the target DC with the source admin
account
Using USRMGR I can administor the source domain when running under the
target domain admin account
I can manually create computer objects with the source domain admin when
logged onto the target dc
The domain trust is set to domain wide authentication and is working correctly
Andrew