gsdroubi
asked on
Stale record in lync 2010
How to delet have migrated all users from lync 2010 to lync 2013,1 user remained that starts with dn=0ACNF\:xx that cannot be deleted,so is there any procedure to delete this ,since I cannot delete the lync 2010 poole a user with dn=0acnf\xxxxxx in lync 2010
Can you move that object to Lync 2013?
Have you also tried force deletion?
Have you also tried force deletion?
ASKER
Hi,
I tried al possibilities,that user is <CNF> as mentioned,i tried the solutions on the internet to get rid of that user,
,if I run this on lync 2010 server
PS C:\Users\administrator.MAK ASSED> get-csuser -Filter {registrarpool -eq "ucs.
akassed.net"}
Identity : CN=Zouheir a. Ghannoum\0ACNF:1422bae4-4e a9-42ff-94 ab-d
fd1c1d3bbdf,OU=Staff,OU=Us ers,OU=Kha dija,DC=Kh adija,DC
=Makassed,DC=net
VoicePolicy :
ConferencingPolicy :
PresencePolicy :
DialPlan :
LocationPolicy :
ClientPolicy :
ClientVersionPolicy :
ArchivingPolicy :
PinPolicy :
ExternalAccessPolicy : Allow No Access
MobilityPolicy :
HostedVoiceMail :
HostedVoicemailPolicy :
HostingProvider : SRV:
RegistrarPool : ucs.makassed.net
Enabled : True
SipAddress : sip:zaghannoum@Makassed.ne t
LineURI :
EnterpriseVoiceEnabled : False
HomeServer : CN=Lc Services,CN=Microsoft,CN=1 :2,CN=Pool s,CN=RTC Ser
vice,CN=Microsoft,CN=Syste m,DC=Makas sed,DC=net
DisplayName : Zouheir A. Ghannoum
SamAccountName : zaghannoum
-------------------------- ---------- -
but on lync 2013,it shows no users
they told me there is a database conflict between both lync fe,is there any tool to solve that problem,since I cannot publish the new topology.i don't know how lync looks for users from what sql table he is finding that user???
I tried al possibilities,that user is <CNF> as mentioned,i tried the solutions on the internet to get rid of that user,
,if I run this on lync 2010 server
PS C:\Users\administrator.MAK
akassed.net"}
Identity : CN=Zouheir a. Ghannoum\0ACNF:1422bae4-4e
fd1c1d3bbdf,OU=Staff,OU=Us
=Makassed,DC=net
VoicePolicy :
ConferencingPolicy :
PresencePolicy :
DialPlan :
LocationPolicy :
ClientPolicy :
ClientVersionPolicy :
ArchivingPolicy :
PinPolicy :
ExternalAccessPolicy : Allow No Access
MobilityPolicy :
HostedVoiceMail :
HostedVoicemailPolicy :
HostingProvider : SRV:
RegistrarPool : ucs.makassed.net
Enabled : True
SipAddress : sip:zaghannoum@Makassed.ne
LineURI :
EnterpriseVoiceEnabled : False
HomeServer : CN=Lc Services,CN=Microsoft,CN=1
vice,CN=Microsoft,CN=Syste
DisplayName : Zouheir A. Ghannoum
SamAccountName : zaghannoum
--------------------------
but on lync 2013,it shows no users
they told me there is a database conflict between both lync fe,is there any tool to solve that problem,since I cannot publish the new topology.i don't know how lync looks for users from what sql table he is finding that user???
So do you have that user already created in your Lync 2013 deployment?
Like what do you get if you run (get-csuser zaghannoum) and if you do see the user in 2013 what do you see in the Identity attribute a DN with CNF or regular DN?
These type of AD object are created due to duplicate user creation at the same time and the DC's not replicating in time so one of them gets mangled and 0ACNF gets added to the DN just to keep it unique, so what you will have to do is get rid of the AD object and see if that resolves your issue.
More reading - http://social.technet.microsoft.com/wiki/contents/articles/15435.active-directory-duplicate-object-name-resolution.aspx
Like what do you get if you run (get-csuser zaghannoum) and if you do see the user in 2013 what do you see in the Identity attribute a DN with CNF or regular DN?
These type of AD object are created due to duplicate user creation at the same time and the DC's not replicating in time so one of them gets mangled and 0ACNF gets added to the DN just to keep it unique, so what you will have to do is get rid of the AD object and see if that resolves your issue.
More reading - http://social.technet.microsoft.com/wiki/contents/articles/15435.active-directory-duplicate-object-name-resolution.aspx
ASKER
ASKER
I run also findobjectsinthepool.ps1,i t gives
PS C:\Users\administrator.MAK ASSED> .\FindObjectsInThePool.ps1 ucs.makassed.net
[No Users found in the ucs.makassed.net pool]
[No Common Area Phones found in the ucs.makassed.net pool]
[No Exchange UM Contacts found in the ucs.makassed.net pool]
[No Workflows found in the ucs.makassed.net pool]
[No Analog Devices found in the ucs.makassed.net pool]
[No Conference Directories found in the ucs.makassed.net pool]
[No Call Park Orbits found in the ucs.makassed.net pool]
[No Unassigned Numbers found in the ucs.makassed.net pool]
[No Application Endpoints found in the ucs.makassed.net pool]
[No Trusted Application Endpoints found in the ucs.makassed.net pool]
[No DialIn Conferencing Access Numbers found in the ucs.makassed.net pool]
PS C:\Users\administrator.MAK
[No Users found in the ucs.makassed.net pool]
[No Common Area Phones found in the ucs.makassed.net pool]
[No Exchange UM Contacts found in the ucs.makassed.net pool]
[No Workflows found in the ucs.makassed.net pool]
[No Analog Devices found in the ucs.makassed.net pool]
[No Conference Directories found in the ucs.makassed.net pool]
[No Call Park Orbits found in the ucs.makassed.net pool]
[No Unassigned Numbers found in the ucs.makassed.net pool]
[No Application Endpoints found in the ucs.makassed.net pool]
[No Trusted Application Endpoints found in the ucs.makassed.net pool]
[No DialIn Conferencing Access Numbers found in the ucs.makassed.net pool]
ASKER
I restarted lync 2010 server,
it gives me
PS C:\Users\administrator.MAK ASSED> get-csuser -Filter {registrarpool -eq "ucs.
akassed.net"}
Identity : CN=Zouheir a. Ghannoum\0ACNF:1422bae4-4e a9-42ff-94 ab-d
fd1c1d3bbdf,OU=Staff,OU=Us ers,OU=Kha dija,DC=Kh adija,DC
=Makassed,DC=net
VoicePolicy :
ConferencingPolicy :
PresencePolicy :
DialPlan :
LocationPolicy :
ClientPolicy :
ClientVersionPolicy :
ArchivingPolicy :
PinPolicy :
ExternalAccessPolicy : Allow No Access
MobilityPolicy :
HostedVoiceMail :
HostedVoicemailPolicy :
HostingProvider : SRV:
RegistrarPool : ucs.makassed.net
Enabled : True
SipAddress : sip:zaghannoum@Makassed.ne t
LineURI :
EnterpriseVoiceEnabled : False
HomeServer : CN=Lc Services,CN=Microsoft,CN=1 :2,CN=Pool s,CN=RTC Ser
vice,CN=Microsoft,CN=Syste m,DC=Makas sed,DC=net
DisplayName : Zouheir A. Ghannoum
SamAccountName : zaghannoum
-------------------------- ---------- -
but on lync 2013,it shows no users
so what is the problem,is there any utility to resolve that conflict,i was told that there is such utility in Microsoft,can I have it
it gives me
PS C:\Users\administrator.MAK
akassed.net"}
Identity : CN=Zouheir a. Ghannoum\0ACNF:1422bae4-4e
fd1c1d3bbdf,OU=Staff,OU=Us
=Makassed,DC=net
VoicePolicy :
ConferencingPolicy :
PresencePolicy :
DialPlan :
LocationPolicy :
ClientPolicy :
ClientVersionPolicy :
ArchivingPolicy :
PinPolicy :
ExternalAccessPolicy : Allow No Access
MobilityPolicy :
HostedVoiceMail :
HostedVoicemailPolicy :
HostingProvider : SRV:
RegistrarPool : ucs.makassed.net
Enabled : True
SipAddress : sip:zaghannoum@Makassed.ne
LineURI :
EnterpriseVoiceEnabled : False
HomeServer : CN=Lc Services,CN=Microsoft,CN=1
vice,CN=Microsoft,CN=Syste
DisplayName : Zouheir A. Ghannoum
SamAccountName : zaghannoum
--------------------------
but on lync 2013,it shows no users
so what is the problem,is there any utility to resolve that conflict,i was told that there is such utility in Microsoft,can I have it
Did you already try
get-csuser -Filter {registrarpool -eq "ucs. akassed.net"} | disable-csuser?
Also do you see that object in AD via ADUC or Adsiedit?
get-csuser -Filter {registrarpool -eq "ucs. akassed.net"} | disable-csuser?
Also do you see that object in AD via ADUC or Adsiedit?
ASKER
hi,
These type of AD object are created due to duplicate user creation at the same time and the DC's not replicating in time so one of them gets mangled and 0ACNF gets added to the DN just to keep it unique, so what you will have to do is get rid of the AD object and see if that resolves your issue.
,I m not able to delete that user with /removelingeringobjects since I read
In the case where these objects reside on non-writables (in Global Catalog partitions) as lingering objects then rehosting the non-writable partition using repadmin.exe is an acceptable alternative. how do I do that command????
These type of AD object are created due to duplicate user creation at the same time and the DC's not replicating in time so one of them gets mangled and 0ACNF gets added to the DN just to keep it unique, so what you will have to do is get rid of the AD object and see if that resolves your issue.
,I m not able to delete that user with /removelingeringobjects since I read
In the case where these objects reside on non-writables (in Global Catalog partitions) as lingering objects then rehosting the non-writable partition using repadmin.exe is an acceptable alternative. how do I do that command????
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER