When using RUM to migrate a computer the process does complete un-joining and joining the target computer to the new domain, but the source computer object will not delete from the source domain.
The tool apparently will not delete the computer object from the domain in the source because of insufficient rights, log reports:
3/25/2010 11:01:26 AM 2360 Deleting account COMPUTER from DOMAIN.
3/25/2010 11:01:26 AM 2360 Deleting computer object: CN=COMPUTER,OU=CITY,OU=Desktops,OU=Workstations,OU=Computers,OU=Root,DC=COMPANY,DC=CORP,DC=FIRMA,DC=COM.
3/25/2010 11:01:26 AM 2360 LDAP Error 0x32. Insufficient Rights
3/25/2010 11:01:26 AM 2360 Account deleting failed.
At the same time service account belongs to the builtin Administrators group of the source domain. Using the service account the object can be deleted manually with no issues. Using the service account the object can also be deleted over the trust when logged into the source domain.
See Resolution
WORKAROUND:
Please specify separate accounts for each domain in RUM, accounts which were created and originating in the source and target domains correspondingly. Using 2 different accounts eliminates the error and resolves the issue.
For more information please also see the KB article SOL59725:
"Error occurs: "1764 Error 0x5. Access is denied." while moving computers with the new QMM RUM (version after 8.3)"
https://support.quest.com/Search/SolutionDetail.aspx?id=SOL59725
© 2024 Quest Software Inc. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy Cookie Preference Center