?
Solved

Cannot create a group in Active Directory, 'The specified group already exists'.

Posted on 2010-08-17
8
Medium Priority
?
2,869 Views
Last Modified: 2012-08-13
I am trying to create a group on our Active Directory (Windows 2003 SBS based) but when I do, it says it can't create the object because it already exists...it doesn't.  Some background:

This server is going to be retired as a DC, so I'm stripping out all the roles it used to carry out for us.  The last one I removed was the Sophos Enterprise console, which is where the problem lies.  The Sophos EC has been moved to another machine and is running well, but any server which is either a DC or a PDC needs to look to an Active Directory group called Sophos Administrators for it to run.  These groups were removed when Sophos was uninstalled, but when I try to re-add one it says it already exists!!  I have had a good look through AD users and computers and it's nowhere to be found.  
0
Comment
Question by:-Juddy-
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 3
8 Comments
 
LVL 24

Accepted Solution

by:
Mike Thomas earned 2000 total points
ID: 33452223
The old (deleted) group will be tombstoned and un usable, your probably better off restoring that group.

See if ad restore can get the group back for you.

http://technet.microsoft.com/en-us/sysinternals/bb963906.aspx
0
 
LVL 3

Author Comment

by:-Juddy-
ID: 33452242
What a fantastic app!!  It's brought back the AD objects, but they are called (example) myrestoredgroupTmpRn.........why the TmpRn suffix?
0
 
LVL 24

Expert Comment

by:Mike Thomas
ID: 33452277
Not sure but maybe so you can identify them and so they won't cause conflicts? just rename them back.
0
Is Your AD Toolbox Looking More Like a Toybox?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

 
LVL 3

Author Comment

by:-Juddy-
ID: 33452281
Sorry, I'm being dim.....I suppose it's just to highlight the fact that it's been restored by the tool.  There's a GUI version too: http://www.windowsreference.com/free-utilities/adrestorenet-the-gui-version-of-adrestore/
0
 
LVL 24

Expert Comment

by:Mike Thomas
ID: 33452288
BTW there is a very nice gui tool linked from this page call ADRestore.net
http://www.petri.co.il/recovering-deleted-items-active-directory.htm

Direct Link to Download
http://www.petri.co.il/downloads/ADRestore.NET.zip
0
 
LVL 3

Author Comment

by:-Juddy-
ID: 33452311
Point coming your way, top man!!
0
 
LVL 3

Author Closing Comment

by:-Juddy-
ID: 33452316
Just great!
0
 
LVL 17

Expert Comment

by:Premkumar Yogeswaran
ID: 33452939
Can you check this in AD

open command prompt and copy paste the comment below

dsquery group -name *Sophos*

also check this

dsquery user -name *Sophos*

Check this query and let us know if you find any thing...

Cheers,
Prem
0

Featured Post

Get free NFR key for Veeam Availability Suite 9.5

Veeam is happy to provide a free NFR license (1 year, 2 sockets) to all certified IT Pros. The license allows for the non-production use of Veeam Availability Suite v9.5 in your home lab, without any feature limitations. It works for both VMware and Hyper-V environments

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Did you know that more than 4 billion data records have been recorded as lost or stolen since 2013? It was a staggering number brought to our attention during last week’s ManageEngine webinar, where attendees received a comprehensive look at the ma…
A hard and fast method for reducing Active Directory Administrators members.
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
Suggested Courses
Course of the Month10 days, 11 hours left to enroll

765 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question