Help ?
I can't leave AD. I tried from the GUI and it gives errors, I tried from CLI and get this error now. There is a computer object in AD for vCenter
root@vcenter [ ~ ]# /opt/likewise/bin/domainjoin-cli query
Name = vcenter
Domain = XXXXX.LOCAL
Distinguished Name = CN=VCENTER-ALLMSD,OU=Infrastructure,OU=Production Environment,OU=XXXXX ,DC=XXXX,DC=local
root@vcenter [ ~ ]#
root@vcenter [ ~ ]# /opt/likewise/bin/domainjoin-cli leave
Leaving AD Domain: XXXXLOCAL
Error: ERROR_MEMBER_NOT_IN_GROUP [code 0x00000529]
VMware support managed to help me out. Here is what we had to do. I hope they put this into a KB article.
++Then we tried the following steps which resolved the issue:
1. Enter the likewise registry
/opt/likewise/bin/lwregshell
2.cd HKEY_THIS_MACHINE\Services\lsass\Parameters\Providers\ActiveDirectory\DomainJoin
3.ls
4.delete_tree <domain-name>
5.delete_value <eg. default>
6.Restart the likewise service
/opt/likewise/bin/lwsm restart lwreg
++Then we verified using the command line below:
/opt/likewise/bin/domainjoin-cli query
++Rebooted the vcenter and it was not joined to domain anymore
I hope this helps someone one day. What a pain this was.
which credentials are you using to leave AD?
I tried both domain admin and the service account we used for vcenter
administrator@domain.local and also vcenter@domain.local
Nothing works
Even tried
/opt/likewise/bin/domainjoin-cli leave domain.local Administrator
asks for password and throws the error immediately
Even rebooted the appliance
VMware support managed to help me out. Here is what we had to do. I hope they put this into a KB article.
++Then we tried the following steps which resolved the issue:
1. Enter the likewise registry
/opt/likewise/bin/lwregshell
2.cd HKEY_THIS_MACHINE\Services\lsass\Parameters\Providers\ActiveDirectory\DomainJoin
3.ls
4.delete_tree <domain-name>
5.delete_value <eg. default>
6.Restart the likewise service
/opt/likewise/bin/lwsm restart lwreg
++Then we verified using the command line below:
/opt/likewise/bin/domainjoin-cli query
++Rebooted the vcenter and it was not joined to domain anymore
I hope this helps someone one day. What a pain this was.