question

JustinPetty-7257 avatar image
0 Votes"
JustinPetty-7257 asked ·

What causes Another Domain Service instance already exists for this tenant when deploying AADDS?

when trying to deploy azure domain services I get the following error:

{"code":"DeploymentFailed","message":"At least one resource deployment operation failed. Please list deployment operations for details. Please see https://aka.ms/DeployOperations for usage details.","details":[{"code":"BadRequest","message":"{\r\n \"error\": {\r\n \"code\": \"BadRequest\",\r\n \"message\": \"Another Domain Service instance already exists for this tenant. TenantId='redacted'; DomainName='sapience.net'; SubscriptionId='redacted'\"\r\n }\r\n}"}]}

I need some help with deploying AADDS

azure-ad-domain-services
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

SaurabhSharma-msft avatar image
0 Votes"
SaurabhSharma-msft answered ·

If you do not have any other Domain Services Instance deployed by any other user but you are getting this error then you need to check for the resources - NSG and VMs attached to the AADDS if these are deleted as well. You can also review the below :

  • Domain controllers for the managed domain are de-provisioned and removed from the virtual network.

  • Data on the managed domain is deleted permanently. This includes custom OUs, GPOs, custom DNS records, service principals, GMSAs etc. that you have created on the managed domain.

  • Machines joined to the managed domain lose their trust relationship with the domain and need to be disjoined from the domain.

  • You cannot sign in to these machines using corporate AD credentials. Use the local administrator credentials for the machine, instead. Deleting the managed domain does not delete your Azure AD directory or otherwise adversely impact the directory. See this link for further clarification

Also, your tenant can have several subscriptions but allowed to have an unique Azure ADDS. So, you need to make sure that no instance has been deployed from any other subscription to the same tenant.

· 3 · Share
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

@sashar-msft Is there any way to find out if there actually is another domain services running on my tenant?

0 Votes 0 · ·

Can you please check if you are seeing domains using the Get-MsolDomain Powershell cmdlet. You can also check in Azure portal for existing domain services.

Are you having a GA access ? You need to have Global Administrator access in your tenant for enabling ADS. Also, you need contributor privileges in your azure subscription to mange the Azure ADDS resources.

0 Votes 0 · ·

@justinpetty-7257 Are you still having this issue ?

0 Votes 0 · ·
JustinPetty-7257 avatar image
0 Votes"
JustinPetty-7257 answered ·

any updates on this?

· 1 · Share
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Have you tried the Powershell cmdlets as mentioned in previous reply to check for any domains.

0 Votes 0 · ·