Error enumerating containers on <dc>, invalid credentials


hi all!
i have problem whenever want access ou inside ad structure, error message using invalid credentials:

error enumerating containers on <dc> using distinguished name ou=ouname, dc=my, dc=domain, dc=com: invalid credentials

but can access whole domain (with admin rights) credentials without problems. comes when try access ou within.

how can happen?

thanks in advance,

andreas

hello andreas,

 

could please collect more information troubleshooting issue?

 

1.    retrieve acl on ou

 

in command prompt, run "dsacls ou=ouname, dc=my, dc=domain, dc=com" complete dacl list.

 

2.    get user's group membership information

 

log on computer credentials, run "whoami /groups" obtain current user membership.

 

 

meanwhile, please make sure user account has proper permissions read ou.

 

1.    enable advanced feature in adcu, right-click ou--->properties--->security tab--->advanced--->effective permissions tab.

2.    click select button, type user name in issue has failed enumerate containers.

3.    verify whether user has been granted proper permissions enumerate.

 

thanks.

 



Windows Server  >  Directory Services



Comments

Popular posts from this blog

difference between wuauclt1.exe and wuauclt.exe

Error: 0x80073701 when trying to add Print Services Role in Windows 2012 Standard

Windows 2016 RDS event 1306 Connection Broker Client failed to redirect the user... Error: NULL