locked
Active Directory OU is not reflected on Client PC RRS feed

  • Question

  • Hi Everyone,

    I facing some issue on adding new user account for remote access. After i found that the OU in my client PC is different from AD.Can you all tell me how to troubleshoot on this issue.

    AD: Windows Server 2008

    Client : Windows 7

    Reference Image:

    1. AD OU:

    2. Client OU:

    Thank You.

    Regards,

    Sam

    Wednesday, January 7, 2015 9:18 AM

Answers

  • This might be a replication issue.

    On both ADUC consoles, check which DC are used to connect. You can change the DC in use by doing a right click on Active Directory Users and Computers within ADUC and choosing Change Domain Controller... option.

    I would recommend that you check your AD replication status using repadmin. It would be good also to check your DCs health status using dcdiag.


    This posting is provided AS IS with no warranties or guarantees , and confers no rights.

    Ahmed MALEK

    My Website Link

    My Linkedin Profile

    My MVP Profile

    • Proposed as answer by Eduard Filimonov Thursday, January 8, 2015 11:47 AM
    • Marked as answer by Amy Wang_ Monday, January 19, 2015 1:56 AM
    Thursday, January 8, 2015 9:17 AM
  • Hi Sam,

    Have you checked replication status between Domain Controllers?

    If AD replication is fine, it could be caused by lack of permissions.

    If the account you used to log on onto the client was a domain account which didn’t have Read permissions on specific OUs, then those OUs wouldn’t show.

    If there are issues with AD replication, please post out related error messages displayed in Repadmin /showrepl result for further troubleshooting.

    Best Regards,

    Amy


    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    • Proposed as answer by Mahdi Tehrani Saturday, January 17, 2015 7:32 AM
    • Marked as answer by Amy Wang_ Monday, January 19, 2015 1:56 AM
    Tuesday, January 13, 2015 3:26 AM

All replies

  • Are you able to resolve the user account from the domain Directory (top level not from an OU) ?

    Regards Prabhu

    Wednesday, January 7, 2015 9:20 AM
  • Hi Prabhu,

    What you mean resolve the user account from the Domain Directory ? Can you elaborate more ?

    Thank You.

    Regards,

    Sam

    Thursday, January 8, 2015 12:39 AM
  • Put the user name and click on check names..

    Regards, Prabhu

    Thursday, January 8, 2015 5:46 AM
  • Hi Prabhu,

    Did put the user name and click on the check names. Put it cant find the new user account.

    Thank You.

    Regards,

    Sam

    Thursday, January 8, 2015 8:01 AM
  • Can you post a snap how and from where you are trying to get the user name resolved?

    Regards, Prabhu

    Thursday, January 8, 2015 8:28 AM
  • This might be a replication issue.

    On both ADUC consoles, check which DC are used to connect. You can change the DC in use by doing a right click on Active Directory Users and Computers within ADUC and choosing Change Domain Controller... option.

    I would recommend that you check your AD replication status using repadmin. It would be good also to check your DCs health status using dcdiag.


    This posting is provided AS IS with no warranties or guarantees , and confers no rights.

    Ahmed MALEK

    My Website Link

    My Linkedin Profile

    My MVP Profile

    • Proposed as answer by Eduard Filimonov Thursday, January 8, 2015 11:47 AM
    • Marked as answer by Amy Wang_ Monday, January 19, 2015 1:56 AM
    Thursday, January 8, 2015 9:17 AM
  • Dear Sam,

    According to your description, I had a test in my virtual environment, however the OU information can be reflected on the client without problem.

    I tried with domain admin account and normal domain users account on the client, results are the same in both situation.

    Would you please check if there's any data synchronization delayand then have a retry on the client?

    Looking forward to your reply.

    Best Regards,

    Ealian

    Friday, January 9, 2015 2:11 AM
  • Hi Sam,

    Have you checked replication status between Domain Controllers?

    If AD replication is fine, it could be caused by lack of permissions.

    If the account you used to log on onto the client was a domain account which didn’t have Read permissions on specific OUs, then those OUs wouldn’t show.

    If there are issues with AD replication, please post out related error messages displayed in Repadmin /showrepl result for further troubleshooting.

    Best Regards,

    Amy


    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    • Proposed as answer by Mahdi Tehrani Saturday, January 17, 2015 7:32 AM
    • Marked as answer by Amy Wang_ Monday, January 19, 2015 1:56 AM
    Tuesday, January 13, 2015 3:26 AM