• Management Pack:  SCOM 2016
  • MP Version:  1.0
  • Released:  10/19/2018
  • Publisher:  Microsoft

AD Agent Assignment: Access Denied While Updating Management Group Container Rule

  • ID:  Microsoft.SystemCenter.ADAssignment.AccessDenied.Alert
  • Description:  Access denied while updating management group container.
  • Target:  AD Assignment Resource Pool
  • Enabled:  Yes

Overridable Parameters

Parameter Name Default Value Description Override
Priority 1  
Severity 2  

Run As Profiles

Name
Default

Alert Details

Message Priority Severity
Access Denied While Updating Management Group Container Medium Critical

Rule Knowledgebase

Summary

This alert indicates that an AD Integration agent assignment rule failed to complete successfully because it was denied access to the domain. Agents will not find out which server they should report to until this problem is resolved.

Causes

Access was denied while adding members to the Security Group. The Run As account used by the rule lacks proper rights.

Resolutions

Ensure that the groups were created with correct ACLs and that the account the rule is running under has access. One way to fix the ACL is to delete the Management Group container in the domain, using MOMADAdmin {Management Group Name} {Domain}, and re-run MOMADAdmin.exe to prepare the domain again. The agent assignment rule will detect that the container was re-built and attempts to re-create the objects with the appropriate permissions.

External References
This rule does not contain any external references.

See Also for SCOM 2016 Management Pack


Downloads for SCOM 2016 Management Pack

AZURE OPTIMIZATION ASSESSMENT GET STARTED
MIGRATION TO AZURE GET STARTED
SYSTEM CENTER MIGRATION TO AZURE GET STARTED
MIGRATION TO AZURE FOR SQL AND WINDOWS 2008 GET STARTED