Ok maybe i didn't quite understand your question and i think i dont get at all the way of this works cause i only have one simple user account in AD with the right of replication and i never done any changes in AD's part is this could be the reason why nothing works ????!!!!!


2013/4/19 Aziza Lichir <aziza.lichir@gmail.com>
i did install DS on linux i just take control of it from windows cause it's easy to use the graphical interface and since i just wanna see how it works i just want to do a first sync with a simple connection no SSL/TLS for the moment.



2013/4/19 Grzegorz Dwornicki <gd1100@gmail.com>

Let me get this right. You have configured the sync service on windows? What about configuration on DS part? Did you install certificates? What instructions did you follow?

19 kwi 2013 14:09, "Aziza Lichir" <aziza.lichir@gmail.com> napisał(a):

Hey,
I didn't explain what i was doing exactely so i actualy have Windows XP computer with one virtual machine with Centos 6 which is the server 389  and since i have no graphical interface on it,  i was obliged to install it on Windows. And in the other part of the network it exist the AD that i want to replicate on my virtuall machine.
The problem i'm facing now is that when i created a sync agreement (Onewaysync fromWindows) it shows that everything is fine but i don't have any replcated users my base is still empty and i have no error and i don't understand why.
So i realy wuld appreciate some help
Thanks


2013/4/17 Grzegorz Dwornicki <gd1100@gmail.com>

Winsync require LDAPS for password sync. This domain user needs some privileges in ad - modifying, read, write on the synced subtree.

From ds point of view you configure normal user account for needs of sync with ad. This user doesn't need to be in your organization tree.  You can place him in cn=config. I usually create account like cn=adsyncuser, cn=config without ocjectclasses providing normal system account attributes.

Hope this helps you

17 kwi 2013 16:40, "Aziza Lichir" <aziza.lichir@gmail.com> napisał(a):
Hey,
Thanks for your quick answer, for the moment I installed the 389 console on a WindowsXP machine and i want to know if i can replicate users from AD knowing that i only use a normal user account and without activating Ldaps ?

thanks for your help


___________________________________________________________
 
Aziza



--
389 users mailing list
389-users@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/389-users



--
 
 

 
___________________________________________________________
 
Aziza Lichir