[Freeipa-users] Active Directory Sync user rights?

2013-11-12 Thread gflwqs gflwqs
Hi, I have created the sync user with: - *Replicating directory changes* rights to the synchronized Active Directory subtree. - A member of the *Account Operator* and *Enterprise Read-Only Domain controller* groups. The user attribute syncronization is working fine, however the passync from IPA

Re: [Freeipa-users] Active Directory Sync user rights?

2013-11-12 Thread Rich Megginson
On 11/12/2013 01:29 AM, gflwqs gflwqs wrote: Hi, I have created the sync user with: - *Replicating directory changes* rights to the synchronized Active Directory subtree. - A member of the *Account Operator* and *Enterprise Read-Only Domain controller* groups. The user attribute