Cannot delete Active Directory clients in the Symantec Endpoint Protection Manager

Article:TECH98152  |  Created: 2009-01-16  |  Updated: 2009-01-16  |  Article URL http://www.symantec.com/docs/TECH98152
Article Type
Technical Solution


Environment

Problem



How to delete clients from the Symantec Endpoint Protection Manager that are no longer in Active Directory


Cannot delete clients from the Symantec Endpoint Protection Manager


Cannot move clients in the Symantec Endpoint Protection Manager

Symptoms
The "Delete Clients" option is greyed out in the Symantec Endpoint Protection Manager
  • The "Move Clients" option is greyed out in the Symantec Endpoint Protection Manager



Cause



This functionality is not available for clients synchronized with Active Directory as they are managed by Active Directory not the Symantec Endpoint Protection Manager. The changes must be made within Active Directory itself.

Solution



Delete, Move, or otherwise edit the clients in Active Directory, then re-sync the OU that the client(s) belong to in the Symantec Endpoint Protection Manager.

    How to re-sync an OU in the Symantec Endpoint Protection Manager:

      1. Log into the Symantec Endpoint Protection Manager
      2. Click on the Clients tab
      3. Right-click the desire OU
      4. Click Sync Now



References
Managed Symantec Endpoint Protection (SEP) Client appears in Default Group instead of Active Directory Organizational Unit (OU) in the Symantec Endpoint Protection Manager (SEPM)



Legacy ID



2009121614231048


Article URL http://www.symantec.com/docs/TECH98152


Terms of use for this information are found in Legal Notices