ADMT SIDHistory without admin access in source domain


  • I'm working to separate out an OU to a new domain. 

    We have ADMT installed in the target domain using an account in the source domain that has full control at the OU level. The account has also been given access to migrate SID history at the top level of the source domain.

    I get the error below unless I add the account to the builtin\administrators group on the source domain. Is there a way to migrate SIDHistory without admin access in the source domain? 

    Could not verify auditing and TcpipClientSupport on domains. Will not be able to migrate Sid's. Access is denied. 

    Friday, December 16, 2016 8:28 PM

All replies