Things to check when you receive this error:

  • The account you are using in the target domain to run ADMT needs to be in the source domain “Administrators” group.
  • The {SOURCEDOMAIN}$$$ group exists in the source domain, if you have to create it, don’t add any members to it or it will fail.
  • Ensure you have enabled auditing of account management in the source domain:
    • Open domain controllers security policy
    • Expand Local Policies -> Audit Policies
    • Double-click “Audit account managment”, put a check in “Define these policy settings”, “Success”, & “Failure” </ul>