Solved

AD user deleation not allow

Posted on 2016-09-14
2
53 Views
Last Modified: 2016-09-28
I have try to delete user and end up with below error message  . I know some one who manage the system before I join enable the  accidental deletion  option enable   in the ou level . but I have take off the check box . bet still the same . when I see the domain level properties that option enable with gray color (can't deselect in the domain level )  

how can I resolve this issue

"The User has insufficient access right  
Active Directory operation failed on SRV3.local this error is not retriable ,additional information : access is denied."
0
Comment
Question by:cur
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 

Expert Comment

by:Waqar Ahmed
ID: 41797565
Are you working in multisite AD ? if yes are you connected to the same domain server where you making the change ? i.e disabling accidental deletion.

if multisite domain try force resync.
check your account permissions i have you have sufficient rights to be able to make changes to AD.
0
 
LVL 18

Accepted Solution

by:
Sushil Sonawane earned 500 total points
ID: 41797598
Make sure your user account have sufficient user permission.

Perform below mention steps to resolve your issue.

Open Active Directory Users and Computers

Find the user

Open up the properties of this user and go to the security tab (if this is not available, choose view and then advanced features in the AD users and computers MMC) Click on [Advanced]

Activate the checkbox “Include inheritable permissions from this object’s parent” and then click [OK] twice.

For more info refer below link:

http://support.risualblogs.com/blog/2012/02/07/the-user-has-insufficient-access-rights-error-when-trying-to-set-send-as-permissions-on-a-mailbox-in-exchange-2010/

https://social.technet.microsoft.com/Forums/exchange/en-US/e370e352-dae1-45b5-8094-25d2cdc41a21/active-directory-operation-failed-on-domainlocal-this-error-is-not-retriable-exchange-2010?forum=exchange2010
0

Featured Post

NFR key for Veeam Backup for Microsoft Office 365

Veeam is happy to provide a free NFR license (for 1 year, up to 10 users). This license allows for the non‑production use of Veeam Backup for Microsoft Office 365 in your home lab without any feature limitations.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article shows the method of using the Resultant Set of Policy Tool to locate Group Policy that applies a particular setting.
Compliance and data security require steps be taken to prevent unauthorized users from copying data.  Here's one method to prevent data theft via USB drives (and writable optical media).
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

635 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question