Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations John Tel on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Cannot create objects in Active Directory

Status
Not open for further replies.
Mar 20, 2004
5
US
Windows 2000 Active Directory Environment. Schema not extended and using Standard Security. Have given smsservice account and my sites machine account appropriate rights to Systems Management Container in Active Directory. Continue to get errors in Hiearchy_Manager and Site_Component_Manager stating "Systems Management Server cannot create the object "" in Active Directory.

Possible cause: This site's SMS Service account or the site server's machine account may not have full control rights for the "System Management" container in Active Directory
Solution: Give the site's SMS Service account full control rights to the "System Management" container, and all child objects in Active Directory.

Possible cause: Another Active Directory object named "" already exists somewhere outside of the "System Management" container
Solution: Locate the other object with the same name, and delete the object from its current location. Then allow SMS create a new object.

Possible cause: The Active Directory schema has not been extended with the correct SMS Active Directory classes and attributes.
Solution: Turn off Active Directory publishing for each site in the forest, until the schema can be extended. The schema can be extended with the tool "extadsch.exe" from the SMS CD." Thanks for the help.
 
Site Hierachy
-Site
Open the properties for your site.
Advanced - Uncheck "Publish Identity Data to Active Directory"

That should stop the errors. It will fail until you extend the schema.
 
Once you have run the schema extentions the warning is still there.
 
I have the same problem, with errors in Hierachy_Manager with SMS_Site_<site name> and Component Manager.

The machine has been added to the Local and Domain administrative accounts (all of them) Administrators, Domain Admin, SMS Admin, and Enterprise Admin.

I had stopped publishing and run the seemingly do nothing schema extention program, and I can't find any instances of the objects that it is trying to create in the Active Directory register either.

Im stumped.

Also, it just isn't detecting any machines other than that of the SMS Site Server machine, and the machine hosting the SQL/DNS.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top