Active Directory Domain Services failed to create an access control entry (ACE) for the Enterprise Domain Controllers group ...

Active Directory Domain Services failed to create an access control entry (ACE) for the Enterprise Domain Controllers group or the Enterprise Read-only Domain Controllers group on a newly created application directory partition.



Application directory partition: 
%3



User Action

Review the access control list (ACL) on the newly created application directory partition. Ensure the Replication Get Changes All access right is assigned to both the Enterprise Domain Controllers group and the Enterprise Read-only Domain Controllers group, and remove the right from the domain Domain Controllers group.