Re: [389-users] Windows Sync

2013-03-21 Thread Rich Megginson
On 03/21/2013 05:32 AM, s.oreilly wrote: Hi, Am I correct in my understanding that I cannot sync OU's from Active Directory to 389-DS? Correct. I am trying to sync users fro an AD server that I do not control and most of the users are separated in to different OU's Is there any way of making

Re: [389-users] Windows Sync Agreement Help

2011-06-01 Thread Albert Teh
The user: mailadm should have a full privilege from the AD because we are using this user for SUN's IDSYNC synchronizing/passwdsyc from the AD to the SUN's DS which is our current LDAP environment. We are trying to change SUN's Directory server to the Linux's 389-Directory server. "cn=mailadm,cn=

Re: [389-users] Windows Sync Agreement Help

2011-05-31 Thread Rich Megginson
On 05/31/2011 10:30 AM, Albert Teh wrote: HI Rich, [root@algldap ~]# /usr/lib/mozldap/ldapsearch -x -w - -D cn="Directory Manager" -b "ou=People,dc=algonquincollege,dc=com" "(|(objectclass=ntuser)(objectclass=ntgroup))" Enter bind password: [root@algldap ~]# No Entry found !!!. You have to

Re: [389-users] Windows Sync Agreement Help

2011-05-31 Thread Albert Teh
HI Rich, [root@algldap ~]# /usr/lib/mozldap/ldapsearch -x -w - -D cn="Directory Manager" -b "ou=People,dc=algonquincollege,dc=com" "(|(objectclass=ntuser)(objectclass=ntgroup))" Enter bind password: [root@algldap ~]# No Entry found !!!. Thanks. Albert On Tue, May 31, 2011 at 11:42 AM, Rich Megg

Re: [389-users] Windows Sync Agreement Help

2011-05-27 Thread Rich Megginson
On 05/27/2011 04:22 AM, Albert Teh wrote: Hi Rich, I reinstalled 389-ds-base 1.2.8.3 from EPEL5 and added onewaysync set as fromWindows in the multimaster replication plugin. I still got the same result with no user created in the DS subtree. Have you read http://docs.redhat.com/docs/en-US/Re

Re: [389-users] Windows Sync Agreement Help

2011-05-26 Thread Rich Megginson
On 05/26/2011 08:58 AM, Albert Teh wrote: Hi, We are setting up a new CENTOS-DS version 8.1.0. and CENTOS 5.5 and attempt to synchronize with the existing 2003 Windows AD server. Performing the full sync completed. There is no user created in the DS subtree. We would like to perform one way

[389-users] Windows Sync Agreement Help

2011-05-26 Thread Albert Teh
Hi, We are setting up a new CENTOS-DS version 8.1.0. and CENTOS 5.5 and attempt to synchronize with the existing 2003 Windows AD server. Performing the full sync completed. There is no user created in the DS subtree. We would like to perform one way Sync: AD > DS. Once it works, we will set

Re: [389-users] Windows Sync with additional schema

2011-05-19 Thread Rich Megginson
On 05/19/2011 08:12 AM, Terry Soucy wrote: > Hi All, > > I've successfully created a Windows Sync Agreement between my test ldap > infrastructure and test AD server. We use the eduPerson schema in 389, > and require it to be on the AD side as well for population of proper > groups of staff/student

[389-users] Windows Sync with additional schema

2011-05-19 Thread Terry Soucy
Hi All, I've successfully created a Windows Sync Agreement between my test ldap infrastructure and test AD server. We use the eduPerson schema in 389, and require it to be on the AD side as well for population of proper groups of staff/students/faculty. Is it possible to sync additional sche

Re: [389-users] windows sync question

2011-05-18 Thread Rich Megginson
On 05/18/2011 11:38 AM, solarflow99 wrote: I have a question about windows sync, in the docs it says the replica role should be single or multi master, but with single master you can't set update settings for the bind DN. Will this still work? Use single master if this server will not participa

Re: [389-users] Windows Sync Agreement troubles

2010-12-13 Thread Andrey Voronin
2010/12/11 Rich Megginson > Can you provide more details? * Details on sync agreement:* DS Host: 389ds.my.domain.name:389 Windows Host: ldap.my.domain.name:389 DS Subtree: dc=my,dc=domain,dc=name Windows Subtree: dc=my,dc=domain,dc=name Replicated subtree: dc=my,dc=domain,dc=name Last update mes

Re: [389-users] Windows Sync

2010-07-27 Thread Nathan Kinder
On 07/27/2010 10:21 AM, --[ UxBoD ]-- wrote: > Hi, > > We have a Windows replication agreement in place which works great; plus we > are using the PassSync on the Windows server itself. The issue we have is > that when somebody changed their password on the Windows server it has got > stuck due

[389-users] Windows Sync

2010-07-27 Thread --[ UxBoD ]--
Hi, We have a Windows replication agreement in place which works great; plus we are using the PassSync on the Windows server itself. The issue we have is that when somebody changed their password on the Windows server it has got stuck due to a Constraint Violation on previous passwords and thi

[389-users] Windows sync stopped working

2010-04-30 Thread Aaron Hagopian
I had everything setup to sync to my domain controller and things were working fine. Recently I saw this message in the logs: [30/Apr/2010:11:59:10 -0500] NSMMReplicationPlugin - agmt="cn=toto.hra.local" (10:636): windows_replay_update: Cannot replay add operation. So I thought maybe I would try