Get me outta here!

Citrixology

by Lal Mohan

Menu

Skip to content
  • About Me
  • Citrix
    • Citrix Cloud
    • NetScaler
    • WEM & UPM
    • XenApp & XenDesktop
    • Citrix Storefront
  • WVD
  • VMware
    • Workspace One

Tag Archives: unable to remove machine accounts via Studio

Unable to remove Machine accounts via Citrix Studio – error “accounts could not be deleted from the identity Pool. Note that this result can occur if you do not have the required Active Directory permissions”

April 8, 2014 by Lal Mohan

When working with broken Citrix catalogs, you might have come across an issue where you are unable to remove/manage machine accounts even though you are a Domain Admin. I first encountered the problem when I tried adding a new VM to an existing catalog which eventually failed. However, the machine accounts were created in Active Directory. And when you use Citrix Studio to remove the Machine Accounts from the failed catalog, it errors saying the below

1 of 1 accounts could not be deleted from the identity Pool. Note that this result can occur if you do not have the required Active Directory permissions

Capture24

I thought someone had altered the permissions of the Citrix service account that is used for MCS configuration under Hosting node in Studio. Checked the permissions and all looked good.

PowerShell to the rescue. I decided to check if the machine account ( of the new machines that you are trying to create using the MCS/PVS catalog) is in Locked State in Active Directory. Please do NOT confuse this with the account lockouts as that is a totally different thing. XenDesktop puts a lock for all the site objects when it senses something isn’t right and it need to be unlocked to manage that object further.

Type the below to load all the XenDesktop Cmdlets

asnp Citrix*
Capture25

Unlock the account first by

Unlock-AcctADAccount -ADAccountSid S-1-5-21-2426453848-4273706875-3323952908-104702

In newer versions of XenApp/XenDesktop/Citrix Virtual Apps and Desktops as you now call them, there is another parameter that could confuse you called “AccountLocked“. That is NOT the parameter we are after and we should be looking for “Lock” and its value. If the value is True, the machine account is required to be unlocked.

Once the account is Unlocked, running Get-AcctADAccount will return a Lock value of False

You should now be able to remove the account using the Studio. Also remember to unlock all the machine accounts in the catalog before retrying the machine catalog deletion. In my case , I had only one machine account as the error message says.

I also have seen some admins reporting errors when failing to remove the Catalog with the below message and this happens when the Catalog reference to the machine account is broken or the administrator removed the accounts themselves from AD.

Capture30

Remove the AD Machine accounts if you haven’t done so and then follow this link to remove the Catalog https://lalmohan.co.nz/2014/04/07/deleting-a-desktop-catalog-in-xendesktop-7-gives-the-error-the-machine-catalog-could-not-be-loaded-unable-to-find-machine-creation-data-for-id/

If the above doesn’t work for you, try removing the AD machine accounts and Machine Catalog via PowerShell by following the commands below

Removing the AD Machine Accounts

Remove-AcctADAccount -IdentityPoolName "CG-XA-W2K16-CAT-CORE" -ADAccountSid S-1-5-21-2426453848-4273706875-3323952908-104702 -Force

Removing the Machine Catalog

Remove-AcctIdentityPool "CG-XA-W2K16-CAT-CORE"

There you have it. Please comment below, if you find the post useful.

-36.871017 174.652351

Spread the love:

  • Twitter
  • Facebook
  • LinkedIn
  • Pinterest
  • Reddit
  • Email
  • Print
  • Pocket
  • Tumblr

Like this:

Like Loading...
PowerShell XenDesktop XenDesktop 7 account unlockunable to remove machine accounts via Studio 3 Comments

Post navigation

Translate this blog

Recent Posts

  • Integrate Azure MFA with NetScaler Gateway for Two-Factor Authentication
  • Microsoft Windows Virtual Desktops (WVD) or Citrix – The Big Question answered!
  • Desktop Restart – Citrix Storefront Power Management
  • Citrix Machine Creation Services (MCS) – Primer For On-Prem Vs Azure
  • Microsoft DirectAccess breaks Citrix/XenApp application launches – Fix

RSS Citrix Blogs

  • Celebrating with our APJ Partner of the Year Winners for 2020!
  • A new era of employee productivity begins today
  • Securing app architectures, infrastructure with Citrix ADC, Citrix ADM
  • Redefining the future of banking with Citrix
  • 2020: The Year of Working from Home
  • Congratulations to the 2020 Citrix EMEA Partner of the Year Winners!
  • Make Work Personal
  • Fire måter å jobbe på i fremtiden
  • Mennesker og teknologi baner vei for helt nye måter å jobbe på
  • Success Readiness: A foundation for best-in-class customer experience

RSS Google Cloud Platform

  • Take the first step toward SRE with Cloud Operations Sandbox
  • New whitepaper: Designing and deploying a data security strategy with Google Cloud
  • How Cloud SQL freed Arcules to keep building
  • Go green: Sustainable disaster recovery using Google Cloud
  • Introducing WebSockets, HTTP/2 and gRPC bidirectional streams for Cloud Run
  • Hands-on with Anthos on bare metal
  • Homesearch makes looking for real estate easier with Google Maps Platform
  • Build your own workout app in 5 steps—without coding
  • BenchSci helps pharma deliver new medicines—stat!—with Google Cloud
  • Work at warp-speed in the BigQuery UI

RSS Trending

  • A deep dive into the Citrix HDX FIDO2 and Windows Hello optimized virtual channel with virtual desktops and apps using USB, NFC, BLE, and built-in authenticators
  • Using Windows Hello FIDO2 capability with web browsers, Microsoft WVD, Teams, and native Windows apps for passwordless logins using your fingerprint or face
  • How to use Azure AD Conditional Access to add a Terms of Use EULA to Citrix Workspace, Microsoft WVD, Office 365, and SaaS apps
  • How to report on Microsoft Authenticator password-less phone sign-in & FIDO2 security key usage using Azure AD & Azure Monitor Log Analytics
  • How to use FIDO2 security keys remotely inside a virtual desktop session hundreds of miles away using Citrix HDX USB redirection and Microsoft Azure AD
  • Work from home reality and making positive IT decisions in response to the COVID-19 Coronavirus pandemic
  • How to use Microsoft WVD, Windows 10 multi-session, FSLogix, & MSIX app attach to build an Azure-powered virtual desktop experience
  • Driving Modern Passwordless Authentication: Citrix Workspace and Microsoft Azure Active Directory
  • Why Windows Hello for Business, Microsoft Authenticator, and FIDO2 are not a suggestion, but a requirement for your Azure AD powered enterprise – PART 2
  • Understanding the passwordless authentication renaissance and how to plan your Microsoft Windows based organization for this change – PART 1

RSS VMware EUC Blog

  • An error has occurred; the feed is probably down. Try again later.

RSS Citrix Guru

  • A look at the upcoming Citrix Identity Platform improvements in Citrix Cloud
  • TOP 10 upcoming features in Citrix Cloud [2019]
  • Citrix Managed Desktops Service is a glimpse into the future of Citrix Cloud services
  • I’ve tested Nutanix Xi Frame and it is…
  • Everything you need to know about WVD, Windows 10 EVD and Citrix
  • EUC Masters Retreat 2019: the conference you want to attend
  • Renewed as Citrix Technology Professional (CTP) for 2019
  • First words from the 2019 Citrix Technology Professionals
  • LTSR vs. CR: Citrix wants customers off LTSR
  • Ultimate Citrix App Layering Guide 2019

RSS Microsoft Azure Blog

  • Key customer benefits of the expanded SAP and Microsoft partnership
  • Azure and HITRUST publish shared responsibility matrix
  • Helping retailers navigate the future
  • Azure SQL Database named among the top 3 databases of 2020
  • Introducing Azure Health Bot—an evolution of Microsoft Healthcare Bot with new functionality
  • 4 common analytics scenarios to build business agility
  • Watch this new series to help you navigate and adopt the cloud
  • 5 ways to save costs by running .NET apps on Azure
  • Azure Cost Management and Billing 2020 year in review
  • Defining roles and responsibilities for cloud cost optimization

RSS Amazon AWS

  • Amazon Lex Introduces an Enhanced Console Experience and New V2 APIs
  • New – AWS Transfer Family support for Amazon Elastic File System
  • Amazon Location – Add Maps and Location Awareness to Your Applications
  • New –  FreeRTOS Long Term Support to Provide Years of Feature Stability
  • Announcing AWS IoT Greengrass 2.0 – With an Open Source Edge Runtime and New Developer Capabilities
  • New – AWS IoT Core for LoRaWAN to Connect, Manage, and Secure LoRaWAN Devices at Scale
  • Announcing Amazon Managed Service for Grafana (in Preview)
  • Join the Preview – Amazon Managed Service for Prometheus (AMP)
  • New – AWS Systems Manager Consolidates Application Management
  • New – AWS Systems Manager Fleet Manager

Blog Stats

  • 473,657 hits

Archives

Create a website or blog at WordPress.com
Cancel
loading Cancel
Post was not sent - check your email addresses!
Email check failed, please try again
Sorry, your blog cannot share posts by email.
Privacy & Cookies: This site uses cookies. By continuing to use this website, you agree to their use.
To find out more, including how to control cookies, see here: Cookie Policy
%d bloggers like this: