Delegating Active Directory - Naming information cannot be loaded because the logon attempt failed


hi,

i trying delegate administration in ad when delegated user tries either load main aduc or customized mmc message below appears.

i have user called pre-config in builtin administrators group, purely used configuring delegation, user being delegated access testou adm-test, have delegated several things, , added user directly acl of ou , gave him full control, yet still gets error message. added user dnsadmins , when adm-test user loads dns snapin says access denied.

i trying ensure adm-test not member of of privileged groups; ba, da, ea, sa still has access things... looks user can't load main root of tree. test user can login client machine no issues though

steve

hi steve,
seems security settings have been corrupted. repair these settings, follow article below:
why can't access microsoft management console (mmc) active directory (ad) snap-ins in windows 2000 , later?
http://windowsitpro.com/windows-server/why-cant-i-access-microsoft-management-console-mmc-active-directory-ad-snap-ins-windo
please note: since web site not hosted microsoft, link may change without notice. microsoft not guarantee accuracy of information.

please remember mark replies answers if , un-mark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com.



Windows Server  >  Directory Services



Comments

Popular posts from this blog

2008 Windows Deployment Server Properties Error

Can no longer user MS Update - Files required to use Microsoft Update are no longer registered

How do a find data in one file, search for it in another file and if not found, write a custom message to another file