The computer object may be a member of an unauthorised group causing this conflict.
Example : DC01: "memberOf: CN=UnauthorisedGroup,OU=Member Servers,DC=domain,DC=local"
The UnauthorisedGroup above is allowing DC01 to be imported via the Scope "OU=Member Servers,DC=domain,DC=local"
To examine the computer object having this issue, download the 3rd party tool AdFIND to export the AD attributes.
Examine the output from AdFIND to determine which attribute may be causing this import.
TPAM checks the user’s specified OU for computer objects to import into the appliance; this check includes computer objects which may be defined within a group. Therefore, where a group is present in the specified Active Directory OU, TPAM will enumerate this group checking for any computers objects and if found, these will be added into TPAM.