Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

ADMT v3 ERR3:7585 The account replicator is unable to continue.

3,248 views
Skip to first unread message

Andrew Dodd

unread,
Apr 29, 2009, 7:06:02 AM4/29/09
to
Dear All,

I am in the middle of an office migration and I have hit a brick wall and I
really need all your help...

Source domain NT4
Target domain w2k3r2
The source account is in the target domains Built in Administrators group so
should have total rights over the target domain.

When running the ADMT wizard it completes but doesn't create the computer
object. As the account is in the Administrators group I haven't needed to
delegrate the permissions to the OU.


[Settings Section]
Task: Computer Migration (29)
ADMT Console
User: CBEASG\GADMBRYAN
Computer: cbegbrasgdc01.c (CBEGBRASGDC01)
Domain: cb.winadroot.com (CB)
OS: Microsoft Windows Server 2003 R2 5.2 (3790) Service Pack 2
Source Domain
Name: CBEASG
DC: CBUKHX01
OS: Windows NT 4.0
Target Domain
Name: cb.wi.... (CB)
DC: cbegbrasgdc01 (CBEGBRASGDC01)
OS: Windows Server 2003 5.2 (3790) Service Pack 2
OU: LDAP://cb.winadroot.com/OU=Workstations,OU=EMEA-G...
Intra-Forest: No
Translate Option: Add
Translate Files: Yes
Translate Local Groups: Yes
Translate Printers: Yes
Translate Registry: Yes
Translate Rights: Yes
Translate Shares: Yes
Translate User Profiles: Yes
Conflict Option: Ignore
Perform Pre-check Only: No

[Object Migration Section]
2009-04-29 11:18:15 Starting Account Replicator.
2009-04-29 11:18:35 ERR3:7585 The account replicator is unable to continue.
Access is denied.
2009-04-29 11:18:35 Operation completed.

[Agent Dispatch Section]

Meinolf Weber [MVP-DS]

unread,
Apr 29, 2009, 7:13:59 AM4/29/09
to
Hello Andrew,

Make sure that the user account you logged on to run ADMT is added into following
groups:

- Local Administrators group.
- Target Domain Admin group
- Source Domain Admin group

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm

Meinolf Weber [MVP-DS]

unread,
Apr 29, 2009, 7:17:58 AM4/29/09
to
Hello Andrew,

Also make sure you can verify the trust:
http://technet.microsoft.com/en-us/library/cc753821.aspx

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm

Andrew Dodd

unread,
Apr 29, 2009, 8:59:01 AM4/29/09
to
Hi Meinolf,

The source domain admins account is running the ADMT as a runas

I get the same result if I log onto the target DC with the source admin
account

Using USRMGR I can administor the source domain when running under the
target domain admin account

I can manually create computer objects with the source domain admin when
logged onto the target dc

The domain trust is set to domain wide authentication and is working correctly

Andrew

0 new messages