DirSync + PwdSync - Passwords not syncing, error 611 Unable to open connection to domain

Hello Everyone.
I've installed and configured DirSync with Password Sync (PwdSync) in a forest with 4 domains.
I'm using the most recent DirSync installation at the date of this post, 6475.0007.
The domain structure is
Parent Domain
- Child Domain 1
-- 'Grand' Child Domain 1
- Child Domain 2
I am successfully syncing users from Child Domain 1 only. I'm using container filtering to sync only 1 selected OU at this stage while I'm testing before deployment.
User's in the selected OU are syncing and AD details are correct. To filter out the domains I didn't want to sync, I had to create an empty OU in each domain and select to sync it. Also in each domain I had to create an account with the
same username and password as the Enterprise account I set up for DirSync.
I enabled Password Sync while using the Windows Azure Active Directory Configuration tool.
After a full sync I receive a 611 error in the Application Log, source Directory Synchronization.
Password synchronization failed for domain: child1.domain.com . Details:
Microsoft.Online.PasswordSynchronization.SynchronizationManagerException: Unable to open connection to domain:
child1.domain.com .
Error: There was an error creating the connection context. ---> Microsoft.Online.PasswordSynchronization.DirectoryReplicationServices.DrsException: There was an error creating the connection context. --->
Microsoft.Online.PasswordSynchronization.DirectoryReplicationServices.DrsSecurityException:
RPC Error 5 : Access is denied. Error creating DRS context handle.
It appears that it's not enough to tick the box to enable Password Sync.
I got a successful sync only after I did the following:
On the DirSync server, opened C:\Program Files\Windows Azure Active Directory Sync\DirSyncConfigShell.psc1
Run the command Enable-MSOnlinePasswordSync
Log in with the Enterprise Admin credentials for the forest
Run the command Start-OnlineCoExistenceSync to begin a sync
I verified the password sync worked successfully with my synced users.
Maybe I missed something in the instructions but I only tried this after reading a blog post by Jethro Seghers. Thanks Jethro!

Your 4 steps are essentially already included during the normal setup wizard process, with the exception of #3.  Because DirSync runs as a service, you logging in to windows as an enterprise admin is not required.  It is possible however that
there were replication or other delays in your multi-domain environment. 
Mike Crowley | MVP
My Blog --
Planet Technologies

Similar Messages

  • N79 (Error message :Unable to open .File type not ...

    Dear nokia service manager,,
    Iam sivakumar using the nokia N79 handset.Iam getting the message like this (Error message :Unable to open .File type not supported)when i was trying to open the video file shooted by some other camera.I have tried changing the format of the file..but no use ..i dont get ant suitable software converter in the internet.So kindly look into this matter as i need this very uregently...
    hope its a mandatory feature as laptop and mobile interface are simple task nowadays in mobile...
    pls reply me..its very urgent...thanku..

    You could try Videora (http://www.videora.com/) - the downside here is that they have specific versions for specific phones, and sometimes it will makea file that plays perfectly in the desired phone but can't be shared to other models. The don't show a version for the N79, but try the N96 one because the N96 is the most similar OS to yours that they offer.

  • ERROR Message "UNABLE TO OPEN" and "E_IO_Cannot_Open"

    Trying to download 6 ebooks from Hive and I can download the acsm file but when I click that I get an error message "Unable To Open" and "E_IO_Cannot Open." The computer is authorised and uses Win 7 with ADE 3.  I tried ADE 4 but no better.  I have an older PC using Vista and ADE 2 and that will download okay but it is constantly being used so it is not convenient.  Does anybody know what's wrong?  Thanks.

    Hello,
    To try to help you, please, could you give some more informations ?
    - the operating system (XP/Vista), the edition ( Pro/Home...) and the service pack
    - usually, the installer installs the both files in C:\Program Files\Microsoft Sql Server\Samples. Is there any change in the location or have you moved the both files ?
    - could you check with the files explorer , that the 2 files are read-write and not read only( find one file, right-click on it, properties and in the 1st tabpage, you should see a checkbox read-only ( if checked , unchecke it ) ?
    - have you Sql Server Management Studio Express Edition ( at least SP1 ) ?
    If no, download it and use it to attach
    in the object explorer,
    click on your instance to expand it
    right click on databases
    in the contextual menu, click on attach
    in the new form,click on add
    you arrive on a second form : find your file , click on it, and OK
    it's the simplest way to attach ( the sp_-attach_db is complicated to type )
    the error messages are sometimes more clear in SSMSEE than in Sqlcmd
    Try also to attach ( thru SSMSEE or Sqlcmd but in using the windows authentification )
    NB: i hope that you are not trying to attach AdventureWorks on a remote instance and on a remote computer ( it would explain access denied )
    We are waiting for your feedback to try to help you more efficiently
    Have a nice day

  • One more solution for Silent Monitoring Windows 7 64-Bit - ERROR VOIP2037 Unable to open the NIC adapter for sniffing.

    Hi,
    we are using UCCX 8.5 SU3.
    After replacing the actual agent workstations with Windows 7 64-bit we had to face problems with the silent monitoring. (no sound at all and in the CSD the usual error popup "Silent Monitor-Session failed...").
    In the CAD logfile I found the errorcode. "ERROR VOIP2037 Unable to open the NIC adapter for sniffing. Please reconfigure the installation."
    After investigating the logfiles, starting postinstall.exe a hundred times and reading the Configuring and Troubleshooting VoIP Monitoring Guide.
    I just learnt about the wonderful tool nicq.exe.
    And so i found out that the driver spcd.sys wasn't installed.
    Check in the registry for "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\SPCD"
    It seems to me that the "Cisco Supervisor Desktop.msi" never installs the driver one a Windows 7 64-bit.
    After starting the NICQ.EXE as administrator the driver is being installed.
    Test 1: Check Driver Status
    Driver not installed. Attempting to install it...
    Driver has now been successfully installed.
    SPCD Driver service is not running. Attempting to start it...
    SPCD Driver service is now running.
    Test 1: SUCCESS
    And after that the silent monitoring works again like a charm.
    Maybe that info help someone.
    kind regards, sebastian

    Excellent information, this has been driving me crazy for a while now.  Once i saw this info I was able to get it resolved rather quickly.
    +5 for you, (I tried to click it above but it would not let me.)

  • I can't run visa interactive control window. ERROR MESSAGE: "Unable to open session "ASrl::INSTR" Status name VI_ERROR-RSRC BUSY Visa cannot curently access this resource.

    I cant run tds220 (driver for oscilloscope).
    Error message:
    VISA: (Hex 0xBFFF000E) The given session or object reference is invalid.
    Furthermore
    I cant run Visa INteractive control.
    Error message:
    "Unable to open session to "ASRL1::INSTR" Return value 0xBFFF0072 Status name VI-ERROE-RSRC-BUSY . VISA csnnot currently access this resource."
    Then change ports, this message appears for another port.
    Thanks for answer.
    Gita

    The port is open by another resource. You note that you should also get an error if you try to access the port in hyperterminal. Try rebooting your computer and the first thing you try is opening a VISA session with Visa Interactive control(VISAIC).
    If that fails, then you have a driver accessing your ports.
    If it works then it was just two applications that were trying to access your port (LabVIEW and VISAIC are seperate apps even thought they both may be using VISA.)
    Closing VISA sessions:
    LabVIEW will only *automatically* close VISA sessions if you have this option set: Tools>>options>>Automatically close VISA sessions.
    Otherwise you need to explicitly call a Visa close on the resource.

  • Output Designer 5.7 Errors - Error 1804 Unable to open configuration file

    Hi...Receiving error messages on accessing newly installed Output Designer 5.7.   Installed on new Win7 laptop.
    Error # 5903 -  You must select a Printer before saving.
    Error # 1804 - Unable to open configuration file "....\Config\PDF.ICF"
    The last error, Error # 1804, closes out the application.   File does not exist within the path.  Tried uninstalling and reinstalling with the same result.  
    Any help would be greatly appreciated!
    Thanks,
    Elena.

    Hi Elena
    This is most likely caused by missing admin rights on Win 7. I have seen this problem within my company.
    When installing Adobe Output Designer it will be placed in %ProgramFiles% which is your C:\Program Files folder.
    In subfolder C:\Program Files\Adobe\Output Designer 5.7\Config there are many configuration files that controls your printer drivers (Presentment targets). Dependent on what user type you are in Win 7 you might not have write access to files in this folder. When you cannot write to this folder you cannot make changes to your printer drivers or install new ones and you are pretty much stuck.
    Solution: Create folder C:\MyPrograms and install Adobe Output Designer here.
    Ståle

  • My iphone will not sync to itunes. It will connect to the computer but will not show up anywhere in itunes. PLEASE HELP!!

    My iphone will not sync to itunes. It will connect to the computer but will not show up anywhere in itunes. PLEASE HELP!!

    Hey there Kellee,
    It sounds like the device drivers for your iPhone are working in Windows, but the phone is not showing in iTunes. You should be able to get that showing again with the steps in this article:
    iOS: Device not recognized in iTunes for Windows
    http://support.apple.com/kb/ts1538
    Start with these three steps, and there are more in the article if you need them.
    1. Update iTunes
    Check that you have the latest version of iTunes installed on your computer. In iTunes, select "Check for updates" in the Help menu.
    2. Check the USB cable
    Verify that the 30-pin to USB cable or Lightning Connector to USB cable is free of debris and not damaged. If another cable is available, test with that cable instead.
    USB cables that are bundled with third-party products or accessories might support only charging those products (and not transmitting data) or they might work only with the product with which they were sold. Using one of these cables to sync could cause issues. If you are using a third-party case, such as an extended battery pack, try removing the case and connecting the Apple-supplied USB cable directly to your device.
    3. Verify that Apple Mobile Device Support is installed
    iOS devices require Apple Mobile Device Support, which should be automatically installed with iTunes. To verify whether it is installed, follow the steps appropriate for your Windows operating system below.
    Windows XP: Click Start and choose Control Panel. Open the "Add or Remove Programs" control panel and verify that Apple Mobile Device Support is visible in the list of currently installed programs.
    Windows Vista and Windows 7: Click Start and choose Control Panel. Click "Uninstall a program" (or if using Windows Vista's Classic View of the Control Panel, click "Programs and Features"). Verify that Apple Mobile Device Support is visible in the list of currently installed programs.
    Windows 8: Move the cursor to the upper right corner, click the magnifying glass, type Control Panel,and press Return. Click "Uninstall a program". Verify that Apple Mobile Device Support is visible in the list of currently installed programs.
    If Apple Mobile Device Support is not listed, remove iTunes, QuickTime, Apple Software Update, Apple Application Support, and then reinstall iTunes. Follow the steps appropriate for your Windows operating system below:
    Reinstall iTunes for Windows XP
    Reinstall iTunes for Windows Vista, Windows 7, or Windows 8
    If after reinstalling iTunes Apple Mobile Device Support is still not installed, follow steps in Trouble installing iTunes or QuickTime for Windows.
    Thank you for using Apple Support Communities.
    Regards,
    Sterling

  • Unable to open connection error

    Hi All,
       I have a report that is connecting to two ODBC DSN connections. Using Crystal Reports 2008 it opens fine and generates reports (we did this even on the Crystal Server using CR 2008).
       When we load this report onto the Crystal Reports Server 2008 Server and try to open it using InfoView, it gives a message "Unable to open connection". Does anyone have any ideas to get it to work on the CR Server 2008? It is a very basic report with 2 ODBC connections. The driver for the ODBC connection is installed on the Server and was tested successfully with Crystal Reports just not with Crystal Reports Server 2008.
       Thank you in advance.

    Used System DSN instead of User DSN

  • Mi mac boock pro no arranca y aparece una pantalla gris y una rueda girando sin cargar cuando entro con command V aparece este error BootCacheControl: Unable to open BootCacheControl: Unable to open /var/db/BootCache.playlist: 2 No such file or directory

    Hola atodos/as. Necesito ayuda.
    Mi mac boock pro no arranca y aparece una pantalla gris y una rueda girando sin cargar cuando entro con command V aparece este error BootCacheControl: Unable to open BootCacheControl: Unable to open /var/db/BootCache.playlist: 2 No such file or directory

  • [SQLSTATE 22001] (Error 8152)Unable to open Step output file.

    Hi,
    I have configured the backups from our SQL Server instance to tape directly with out storing in the local drive, so that the disk space allocated for storing the backups in the local drive is saved. 
    but i end up with the below error.
    Executed as user: CORP\devsqlservice. select       DATABASE_NAME   = db_name(sd.database_id)      from       sys.databases sd      where         -- ONLINE    
      sd.state = 0        and sd.is_read_only = 0      group by sd.database_id      order by 1 [SQLSTATE 01000] (Message 0)  String or binary data would be truncated. [SQLSTATE 22001] (Error 8152)Unable
    to open Step output file.  The step failed.
    I am clueless , why i face this error, Do any one of you face such problems in backup (scheduled backups) job. 
    hemadri

    Hi Hemadribabu,
    >>”string or binary data would be truncated”
    As my research, the error above could occur in the case of passing string or binary data, whose length is larger than received object. So I recommend you to run the Transact-SQL script in SQL Server query window to check if this kind of issue exists, or
    you can post your entire script for further analysis.
    >> “unable to open step output file”
    In addition, as for the error above, this issue can be caused by two reasons below.
    1. The path of the output file is invalid. To fix the issue, please follow the steps below.
        a. Double click on the SQL Agent job.
        b. Switch to Steps tab, and click Edit.
        c. Click Advanced option.
        d. Change the path under Output file or delete the path. For a UNC path, you can 
    map a network drive and use the network drive instead.
    2. Your account doesn’t have access to the folder. Transact-SQL job step runs as the owner of the job step, or as the SQL Server Agent service account. So please check the type of the job step and the account which your job step runs as, and make sure that
    it has access to the folder. For more information about the process, please review the similar thread:
    https://social.msdn.microsoft.com/forums/sqlserver/en-US/7610b484-98b7-42dc-816f-dbc884e84c6d/backup-database-permission-problem   
    Regards,
    Michelle Li

  • LOAD ALIAS ERROR - 1002000 - Unable to Open Ascii File

    LOAD ALIAS ERROR - 1002000 - Unable to Open Ascii File
    Edited by: sj0609 on Nov 23, 2011 11:18 AM

    Just off the top of my head, have you tried doubling up the backslashes?
    I have had problems getting an ASO alternate alias table loaded from MaxL at all (back in v9) but I didn't get the same error you do.

  • Numbers error msg: "Unable to open ' .' Unknown file type."

    I last updated this doc 4 days ago, saving it every time I update it. I use it to track my children's school hours throughout the year. I have since restarted my Mac. I went to open this file today, and am getting the error message, "Unable to open ' (name of file)' Unknown file type.
    When I search for the doc under the spotlight, the name of it appears & it is listed as a Numbers doc, but I can't open it.
    Any ideas for a work around? I haven't backed it up in several weeks, so I'll be very sad if I can't retrieve it at all!
    Thanks for your help.

    Have a look here http://www.dmxzone.com/go/16740/clearing-dreamweaver-s-cache
    PS: Error 2 u 2

  • [Compiler] Error #1063: Unable to open file: /alchemy-darwin-v0.5a/avm2-libc/lib/asmachine.abc

    Can anyone give input on receiving this error when compiling?  I've come across it a few times.  The current project is compiling libjpg from www.ijg.org/
    [Compiler] Error #1063: Unable to open file: /projects/zaalabs/alchemy-darwin-v0.5a/avm2-libc/lib/asmachine.abc.
    There is no trace of this file, however within the achacks/gcc script there is a line:
    $machimp="$libc/lib/asmachine.abc";
    Referencing this file.  Is this something that wasn't released as part of the 0.5a?  Is there a workaround?
    Anyone had success with a workaround, or anyone find a magical copy of asmachine.abc?
    Aaron

    EDIT: found the solution here: http://forums.adobe.com/thread/25449

  • Module: AppleODClientLDAP - unable to open connection to LDAP server - unable to create connection context

    Hi everybody,
    I'm running in an urgent problem, because binding to my OpenDirectory got lost. I've lots of "Module: AppleODClientLDAP - unable to open connection to LDAP server - unable to create connection context" messages in the system.log and OD service stoppped running. In the OD-section no server is listed any longer and all buttons are greyed. All network users for sure are not available, but all other services are up. I didn't changed anything to the existing services but started with the netinstall config. I got the following entries in the systemlog
    Jun 19 00:35:30 macminiserver.homenet bootpd[95005]: server name macminiserver.homenet
    Jun 19 00:35:30 macminiserver.homenet bootpd[95005]: interface en0: ip 192.168.0.11 mask 255.255.255.0
    Jun 19 00:35:30 macminiserver.homenet bootpd[95005]: subnets: Failed to convert 'domain_search': Empty array
    Jun 19 00:35:30 macminiserver.homenet bootpd[95005]: bsdpd: re-reading configuration
    Jun 19 00:35:30 macminiserver.homenet bootpd[95005]: bsdpd: shadow file size will be set to 48 megabytes
    Jun 19 00:35:30 macminiserver.homenet bootpd[95005]: bsdpd: age time 00:15:00
    Jun 19 00:35:30 macminiserver.homenet bootpd[95005]: bsdpd: no NetBoot images found
    Jun 19 00:35:30 macminiserver.homenet bootpd[95005]: bootpd: NetBoot service turned off
    Jun 19 00:35:30 macminiserver.homenet bootpd[95005]: DHCP REQUEST [en0]: 1,0:1b:77:36:47:f6 <NB01>
    Jun 19 00:35:30 macminiserver.homenet bootpd[95005]: ACK sent NB01 192.168.0.107 pktsize 304
    Since these logentries appeared, no network users and groups are available anymore. I'm running OS X ML 10.8.3 and DNS is fine.
    Are there any steps to perform to get LDAP working again? With all buttons in the server admin OD section greyed out I even can't setup a new directory.
    BR
    Jens

    I was able to restore the existing server with the automatic OD backup that Server.app creates. When my OD fails to start after a crash and db_recover commands don't work, it's always worked for me to restore the odmaster from a backup using the command:
    sudo slapconfig -restoredb /private/var/backups/ServerBackup_OpenDirectoryMaster.sparseimage
    I'm careful to keep an independent OD backup with Carbon Copy Cloner and this preflight script.
    You can also grab an earlier version of the sparse image ServerBackup_OpenDirectoryMaster.sparseimage from a Time Machine backup. It's also possible to rsync the database files directory from a Time Machine backup.

  • After purchasing a movie on i tunes i get an alert saying can not sync because its unable to be played on iphone 4

    Hi There guys anyone have this problem, unable to sync new movie purchase on iphone4 error mess "unable to synce movie as it can not be played on iphone 4""  the movie is fast & furious 5 any help would be appreciated

    yes i am having the same problems syncing to my 4s aswell.. i get vague explanations.. i.e unable to sync because sync would not start?? and also cannot play on iphone... which is rediculous.. same with my music.. it only ended up on my phone because i downloaded the song over.. but that uses my data which is annoying.. my iphone will also not connect to ANY Wi Fi network which makes downloading anything large impossible.. and now with itunes basically doing the same thing.. starting to wish i bought an android

Maybe you are looking for

  • IPad mini retina screen protector

    I need to get a screen protector for the new iPad mini retina and, after some googling, can't locate anything confirming whether the layout of the screen exactly matches that of the predecesor, iPad mini.  Is the footprint of the two devices exactly

  • Select in View doesn't works

    Somebody knows why a fine select in sqlplus doesn't work when i create view based in fine select ?... Thanks ...

  • Ibook G3 just died after installing 10.4.1 update

    I have been using my ibook g3 with 10.2 for a couple of months now. I suffered from the logic board/ graphics chip problem but managed to fix this myself. Today i got 10.4 and it installed fine, I had a strange problem where my speedtouch modem would

  • Will reinstalling Mac OS X Mountain Lion wipe my Hard Drive?

    I want to reinstall Mac OS X Mountain Lion on my MacBook Pro 2012. I have many apps and files on my Mac's hard drive and I was wondering what would happen to them if I were to reinstall Mountain Lion.

  • Assigning roles to Parallel dynamic block-multiusers

    Hi David, I am using PDB in that one sequential block is used , which I am assigning to multiple users.I have assigned the role in Process- Default role tab. Parallel dynamic block Sequential block Action1---- assigning multiuser Every thing is worki