Active Directory

Lingering Object Liquidator tool

Hello all,

Hope this post finds you in good health and spirit.

This post is about Lingering Object Liquidator tool and how we can remove the lingering objects through this tool.

Lingering Object Liquidator tool

The Lingering Object Liquidator (LOL) is a tool to automate the discovery and removal of lingering objects. The tool uses the DRSReplicaVerifyObjects method, which is leveraged by the repadmin /removelingeringobjects command and the repldiag tool in combination with the removeLingeringObject rootDSE primitive that’s used by LDP.EXE.

Benefits and availability

  • Combines discovery and removal of lingering objects in one interface.
  • The tool is available from the Microsoft download center.

Key features

  • Removes all the lingering objects across all domain controllers (DCs) without any prompting.
  • Performs an (n * (n-1)) comparison across every DC in the forest.
  • Performs topology detection, which lets you pick and choose DCs to use for Lingering object comparison (source and target).
  • Exports a list of lingering objects as a CSV file, so that it can be edited offline and then imported back into the tool to remove the objects if necessary (useful for advanced removal operations).
  • Saves the contents of the object in a log file in case a new object must be hydrated from the lingering object.

Tools requirements

  • Download and run Lingering Object Liquidator on a DC or member computer in the forest you want to remove lingering objects from.
  • The Microsoft .NET Framework 4.5.2 must be installed on the computer that’s running the tool.
  • Permissions: The user account running the tool must have Domain Administrator credentials for each domain in the forest that the executing computer resides in. Members of the Enterprise Administrators group have domain administrator credentials in all domains within a forest by default. Domain Administrator credentials are sufficient in a single domain or a single domain forest.
  • You must enable the Remote Event Log Management (RPC) firewall rule on any DC that needs scanning. Otherwise, the tool returns an “Exception: The RPC server is unavailable” error.
  • The liquidation of lingering objects in Active Directory Lightweight Directory Services (AD LDS / ADAM) environments is not supported.

Lingering object detection

Run the tool as a domain administrator (or as an Enterprise administrator if you want to scan the entire forest). To do this follow these steps.

Note You will receive error 8453 if the tool is not run as elevated.

So, that’s all in this blog. I will meet you soon with next stuff .Have a nice day !!!

Recommended contents

How to Check the Active Directory Database Integrity

Disabling and Enabling the Outbound Replication

DFS Replication Service Stopped Replication

What is Strict Replication Consistency

The replication operation failed because of a schema mismatch between the servers involved

Troubleshooting ad replication error 8418 the replication operation failed because of a schema mismatch between the servers

How to export replication information in txt file

Repadmin Replsummary

Enabling the outbound replication

Disabling and enabling replication on schema master domain controller

How to enable strict replication consistency

How to prevent lingering objects replication in active directory

AD replication process overview

How to force active directory replication

Change notification in replication process

How to check replication partner for a specific domain controller

dcdiag test replications

DFS Replication Event

Unidirectional replication

Guys please don’t forget to like and share the post. You can also share the feedback on below windows techno email id.

If you have any questions feel free to contact us on admin@windowstechno.com also follow us on facebook@windowstechno to get updates about new blog posts.

How useful was this post?

Click on a star to rate it!

As you found this post useful...

Follow us on social media!

Was this article helpful?
YesNo

Vipan Kumar

He is an Active Directory Engineer. He has been working in IT industry for more than 10 years. He is dedicated and enthusiastic information technology expert who always ready to resolve any technical problem. If you guys need any further help on subject matters, feel free to contact us on admin@windowstechno.com Please subscribe our Facebook page as well website for latest article. https://www.facebook.com/windowstechno
Back to top button