Error enumerating containers on <dc>, invalid credentials
i have problem whenever want access ou inside ad structure, error message using invalid credentials:
error enumerating containers on <dc> using distinguished name ou=ouname, dc=my, dc=domain, dc=com: invalid credentials
but can access whole domain (with admin rights) credentials without problems. comes when try access ou within.
how can happen?
thanks in advance,
andreas
hello andreas,
could please collect more information troubleshooting issue?
1. retrieve acl on ou
in command prompt, run "dsacls ou=ouname, dc=my, dc=domain, dc=com" complete dacl list.
2. get user's group membership information
log on computer credentials, run "whoami /groups" obtain current user membership.
meanwhile, please make sure user account has proper permissions read ou.
1. enable advanced feature in adcu, right-click ou--->properties--->security tab--->advanced--->effective permissions tab.
2. click select button, type user name in issue has failed enumerate containers.
3. verify whether user has been granted proper permissions enumerate.
thanks.
Windows Server > Directory Services
Comments
Post a Comment