Project Online - Active Directory Sync runs automatically

Hi,
Once configured the AD sync in Project Online, I want to know if it will occur automatically when the AD group is upgraded, or if it is necessary to enter the PWA and perform manually.
My synchronization occurs with a security group of Office 365.
Is there a way to schedule this process?
Thanks.
Emmanuel BC

Hello,
There is a PSI method you run the AD sync:
http://msdn.microsoft.com/en-us/library/gg225862(v=office.15).aspx
If this was on-prem you could easily call this using PowerShell but that would be a little more difficult for Project Online. You can access the PSI is Project Online but you have to work out how to authenticate against Project Online PSI. You can do this
in code quite easily so it is possible but I have not tried in PowerShell.
Paul
Paul Mather | Twitter |
http://pwmather.wordpress.com | CPS

Similar Messages

  • Connect Active Directory Sync Error - operation-size-error

    We are on Connect 9. We have our Active Directory Sync running once per day. I received a sync log error as follows:
    E-Learning-All-Empl-grps
    G
    error
    Change$Update$Group: SyncTargetException: StatusException$OperationSizeError: <status code="operation-size-error"/>
    The E-Learning-All-Empl-grps is a distribution list in Active Driectory that is used to contain one of 9 sublists. Each sub-list has up to 800 names. This was to get around an earlier issue with their being a limitation when we are on Breeze that only a max of 800 names could be in any group.
    What does this error mean and how can I correct this?
    Dave

    I tried all of this, I still can not bind my Mac 10.6.3 to Microsoft Windows 2003 R2 Active Directory, and the failure I receive that Time settings between both computers is not synced although the time is the same on both machines, and I restart the NNTP on Windows Server, and added the Active Directory IP Address on the Date & time Settings on Mac.
    Any Help

  • Cannot install Windows Azure Active Directory Sync tool on Server 2012 w/ SQL Server 2012

    I went to change a user password on the server today and after changing the password I logged into the SQL server to run “Import-module dirsync” & “Start-onlinecoexistencesync” in powershell in order to sync the new password with Exchange Online. After
    waiting ten minutes I tried setting up the email on the user’s PC but the new password was not being accepted. I logged into Office 365 and I got the following warning.
    "Warning: Last synced more than 3 days ago | Troubleshoot"
    So I pressed troubleshoot and the site installed a tool on the server to try and find out what the issue was. After the tool ran it told me that the version of dirsync.exe was out of date and that I should download the new one and install it. So I downloaded
    the new dirsync.exe (version 7020 I believe) and tried installing it. I kept getting error after error, different ones to boot.
    First it told me I wasn’t part of the FIMSyncAdmins group (so I added myself), then it told me that it could not connect to MIIS server,  so I tried starting it and windows said that there was a problem with the sign on used by the service so I had
    to reset the password for the local user named “AAD_bfd1d6f0cef7” which was being used by that service. The service started successfully and when I went to install it told me I could not and if the problem persisted I should uninstall the old version and reinstall.
    Looking in the log file, before I even install the software I see the following Information...
    Level: Information
    Date: 2015-03-24 12:49:17 PM
    Source: Directory Synchronization
    Event ID: 0
    Task Category: None
    "The current configuration of the Windows Azure Active Directory Sync tool is invalid. Please reinstall the Windows Azure Active Directory Sync tool."
    So I tried to reinstall (i even manually uninstalled the old version and removed the folder in C:\Program Files\ called "Windows Azure Active Directory Sync") and on reinstall I get as far as "Installing Components" and then after a little
    while it errors out with the error "The install was unable to setup a required component. Check the event logs for more information. Please try the installation again and if the error persists, contact Technical Support. "
    Looking at the log file there are a bunch of new entries, created by the installer. There's over 300 new entries and I can not post them all here due to character count restriction. you can find the log file here...
    www.clarkfreightways.com/wp-content/uploads/2015/03/dirsync_log.txt
    Can anyone tell me what is going on, I've been looking through the log files and I can see errors but I'm not sure what to do to fix it.

    Greetings!
    Wanted to know if you've hosted the DirSync tool (latest version) on a VM? Also, if this is deployed in a Production or Lab environment? If it's a lab setup, you may
    try installing the DirSync on a new VM / Server (suspecting that it could be some machine related issues).
    Here's a Support KB helping with different errors:
    http://support.microsoft.com/en-us/kb/2684395
    If its a production environment, would suggest to raise a
    Technical Support Ticket for assisting further with break-fix.
    Thank you,
    Arvind 

  • Windows Azure Active Directory Sync Setup

    Hi,
    Currently trying to install Windows Azure Active Directory Sync tool for use with Office 365.
    After five attempts to install the Sync Tool, I finally had some luck, now I am configuring the Sync tool and have been given the following error "A constraint violation occurred"
    In looking at the event logs this is the information I get:
    System.Management.Automation.CmdletInvocationException: A constraint violation occurred. ---> System.DirectoryServices.DirectoryServicesCOMException: A constraint violation occurred. at System.DirectoryServices.DirectoryEntry.CommitChanges() at Microsoft.Online.DirSync.Common.DirectoryServicesAdapter.DirectoryEntry.CommitChanges()
    at Microsoft.Online.Coexistence.PS.Config.EnableMSOnlineRichCoexistence.GrantWritePropertyPermission(SecurityIdentifier securityIdentifier, String groupDn) at Microsoft.Online.Coexistence.PS.Config.MSOnlineRichCoexistenceBase.GrantPermission(Action`2 grantPermissionAction)
    at Microsoft.Online.Coexistence.PS.Config.EnableMSOnlineRichCoexistence.InternalBeginProcessing() at Microsoft.Online.Coexistence.PS.Config.MSOnlineConfigCmdlet.BeginProcessing() at System.Management.Automation.Cmdlet.DoBeginProcessing() at System.Management.Automation.CommandProcessorBase.DoBegin()
    --- End of inner exception stack trace --- at System.Management.Automation.Runspaces.PipelineBase.Invoke(IEnumerable input) at Microsoft.Online.DirSync.PowerShellAdapter.PowerShellCommand.ExecuteCommand(Command command, Boolean refreshPath)
    Suggestions?
    Thanks

    Hi,
    According to your description, it seems that you have installed Azure Active Directory Sync tool successfully, right? What configuration have you done when you got that error message?
    Firstly, I recommend you to check the event logs for more detailed information about this issue.
    In general, it is recommended to install the Directory Sync tool on a member server rather than a Domain Controller. If you installed Azure Active Directory Sync Tool on a Domain Controller, please uncheck “Start Configuration Wizard now”
    checkbox and then log off and log in again to configure the Azure Active Directory Sync Tool Configuration Wizard. If you forget to follow the above process, the Configuration Wizard will return an error "Constraint Violation Error".
    Besides, please also check the permission of the system account. You can add it into the built-in Administrators group in your on-premise domain to see if the issue persists.
    More information:
    HowTo: Install the Windows Azure Active Directory Sync Tool
    Best regards,
    Susie

  • Exchange and EOP and "Windows Azure Active Directory Sync tool".

    Hi,
    Since we are using our on-premises Exchange server and Microsoft EOP only for spam filter, and
    we are not using the EOP created domain "XXXX.onmicrosoft.com" for anything.
    Technically speaking, do we require
    "Windows Azure Active Directory Sync tool" to be installed and synchronizing all our AD to the EOP!
    Thanks,

    The Windows Azure Active Directory Sync Tool allows you to filter mail in EOP for nonexistent recipients.  This is a pretty useful antispam feature that you'll be forgoing if you choose not to deploy the tool.
    Ed Crowley MVP "There are seldom good technological solutions to behavioral problems."

  • Bulk Uploading of New Users without Active Directory Sync. Possible?

    Hello,
    WithOUT Active Directory synchronization, is it possible to do a bulk upload of 100+ users onto Project Server 2013 (Online)?  If so, how?
    In addition, can these new users be setup to default with “User can be assigned as a resource"? 
    Thanks in advance,
    \Spiro Theopoulos PMP, MCITP. Montreal, QC (Canada)

    Hi,
    it is possible, but not completely.
    If you select at least one resource in Resource Center and click "Open", this resource is opened for editing in client. At this place, you can add your new resources with all fields (and Default Booking Type), e.g. with copy/paste from some other
    source. They are added as resources. However, editing column "User Logon Account" is disabled, so you can't add this information in client. You need to do this afterwards from Resource Center for each single resource.
    And yes - I agree: This is very inconvinient!
    Regards
    Barbara
    To increase the value of this forum, please mark the replies that helped to solve your issue as answer. If you find answers to questions from other forum participants to be helpful, please mark them as helpful. Your participation will help others to find
    an appropriate solution faster. Thanks for your support!

  • Project Online and Outlook Sync

    Hi, I have just added a E3 trial onto my Office 365 portal that has Project Online.  This is so I can test the Outlook Sync Tasks feature.  I am getting the below message - any ideas of the issue and fix?
    "We weren't able to start syncing your tasks because there is no email address associated with your profile. Please request an email address or contact your administrator"
    thanks in advance
    Steve

    This will only work with mailboxes hosted on Exchange online. Have you setup a mailbox for your user account?
    Gary Chefetz, MCITP, MCP, MVP msProjectExperts
    Project and Project ServerFAQs
    Project Server Help BLOG

  • Does EOP for in house accounts require Active Directory Sync?

    Is it just me, or is the documentation on Office 365 filled with contradictions and not written in a way that's understandable, even for seasoned IT pros?
    In short, does EOP require Active Directory to use non cloud accounts?
    I'm having a problem with spam on a NON Active Directory integrated mail server.  Nowhere in any online documentation that I found (about 10 hours of googling) says that AD is required to implement EOP.
     To the contrary:
    See here: http://technet.microsoft.com/en-us/library/jj871669(v=exchg.150).aspx
    Q. Does the service work with legacy Exchange versions (such as Exchange Server 2010) and non-Exchange environments?
    A. Yes, the service is server agnostic and can be used with any SMTP mail transfer agent.
    But when I attempt to use EOP with my office 365 accounts, with local email (not exchange online), my mail is bounced because the accounts aren't found.  If I create exchange accounts, mail doesn't come to my local server, it stays at exchange online.
    Am I missing something?

    Hi,
    changing the domain type to Relay disables the edge blocking feature where e-mails to invalid users are blocked by EOP. In my eyes this is a very important feature so you should use one of the following ways to have the valid recipients in EOP:
    http://technet.microsoft.com/en-us/library/dn636911(v=exchg.150).aspx
    Greetings
    Christian
    Christian Groebner MVP Forefront

  • Active Directory Sync

    Hi,
    Is it possible to increase the AD sync schedule for Lync 2013?
    Regards

    Hi NinjaAx,
    Address Book servers are intermediaries between Active Directory and Lync Server. The Address Book server ensures that the user information stored in Lync Server is in synch with the
    user information stored in Active Directory. This is done by periodically synching Address Book files with the information stored in the User database. By default, this synchronization takes place every five minutes. (However, that time interval can be modified
    by using the Set-CsAddressBookConfiguration cmdlet.)
    If you can’t wait for synchronization to take place or if it appears that, for some reason, synchronization isn’t taking place, you can use the
    Update-CsAddressBook cmdlet to force an Address Book server to immediately synch with the user information stored in the User database.
    Best regards,
    Eric

  • Configuration Help - Sun Java Directory 5.2 and Active Directory Sync

    Don't know what I am skipping... but I get stuck with no Domain Controllers showing up in the pick list, when configuring an Active Directory Resource.
    I am using DS 5.2.P4 on Windows 2003 Sp1 server, along with Indentity synchronization for windows (ISW) 1 2004Q3 SP1.
    I have the installtion manaul and can not get past step 6 of creating an Active Directory Source, becuase no Domain Conroller show up in the pick list, nor can I specify one. I have verified that one of the Domain Controllers is configured as Single Master Operations Role in the AD.
    Any help on this matter would be greatly appreciated.
    Thanks,

    nebiyou1 wrote:
    1. Is Messaging Server 5.2 compatible with Sun Java Directory Server 6.3?This is obviously not a tested (or supported) combination. That being said I'm not aware of any particular issues with MS5.2 and DS6.3.
    If Yes, any documents on how to migrate Messaging Server from pointing to Directory Server 5.2 to 6.3?No.
    2. Can Messaging Server 5.2 p 2 run on Solaris 10?Yes. However you need to upgrade to 5.2hf2.18 (last hotfix released) to address known Solaris 10 issues e.g.
    5108758 Dispatcher incorrectly determines Solaris 10 version
    You can get a copy of iMS5.2hf2.18 from Sun support.
    Regards,
    Shane.

  • CUCM 10.0.1.10000-24 Active Directory Sync - Directory URI cleared after sync

    Hi,
    I would like to know if it is intended or bug when AD sync is performed each time it clears Directory URI field even I have selected it in mapping to <None>.
    Because I have different domain for Jabber URI dialing than email domain I need to fill it up manually, but performing sync other data from AD.
    Thanks

    isn't there any workaround how to sync users from LDAP but have Directory URI for user set manually?
    I need to set it up due IM and Presence as I have domain in email format for Lync Server 2013 and now I need another domain for CUCM and IM and Presence as it couldn't coexist on same domain. Or it could?

  • Active Directory Enterprise Resource Pool Synchronization

    I'm running in to an issue with Project Server 2013 that has me pulling my hair out.  A co-worker and I switched it over from SharePoint Permissions Mode to Project Permissions Mode and are trying to set up AD Enterprise Resource Pool synchronization. 
    I go in to Server Settings --> Operational Policies --> AD Resource Pool Synch and try to add 1 to 5 groups.  The groups resolve (actually autocomplete) and appear correctly.  If iclick Save or Save & Synchronize Now, nothing happens. 
    No page refresh, no redirect, etc.  If I go in to Security Settings --> Manage Groups, I can edit one of the built-in PWA groups and add the AD group, click save, and get redirected back to Server Settings.  But then going back in to the newly
    edited group, the AD Group field is empty; and on the Manage Groups page the "Active Directory Group" and  "Last Sync" columns are empty.
    I would chalk this up to an AD issue, but I have no problem using the same account to add an individual user as an Enterprise Resource and tie it to an AD account, so I can only assume that this account has all of the permissions required for AD and it can
    query and resolve fine.  Does anyone have any idea what could be going on, or possibly some step I might have missed when setting this up?
    Thanks in advance.

    I know it looks like a different issue, but that is the only thing logged in ULS regarding Project Server at the time of trying to do the sync.  If it helps, I can provide another log and see if something else comes up, but I did watch the ULS Viewer
    at the time and the same errors kept popping up when trying to do the sync.
    Also, the "other environment" is just a second instance of PWA on the same SharePoint farm, so it's not a separate environment completely.  Using the same AD groups, so there shouldn't be any discrepancies.  It's not the best test I know,
    but I'm still in the middle of setting up an AD test environment and trying it from there, just to see if it's an issue with my SharePoint installation or PWA installation.
    Edit:
    Here's a full verbose log:
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Security    agsdb    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: Calling license check now; Thread.CurrentPrincipal.Identity.Name = 0#.w|*****\sharepointfarmsvc, Context.Username = i:0#.w|*****\sharepointfarmsvc, LogLevelManager Warning-ulsID:0x001920C1
    has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Security    agsdc    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: License check for BusinessObject method Admin.GetActiveDirectorySyncEnterpriseResourcePoolSettings2 passed - user i:0#.w|*****\sharepointfarmsvc (resuid=806f917d-85b6-e211-93ef-00155d0a5600)
    was licensed, LogLevelManager Warning-ulsID:0x001920C2 has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Security    agwmc    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: Access Granted for user i:0#.w|*****\sharepointfarmsvc on BusinessObject method Admin.GetActiveDirectorySyncEnterpriseResourcePoolSettings2.  CheckFarmAdmin=False, CheckGlobalPerms=True,
    LogLevelManager Warning-ulsID:0x00196302 has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    General    ad2n8    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: Running command using non-transactioned Sql session., LogLevelManager Warning-ulsID:0x000DC362 has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Administration    agmy5    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: GetActiveDirectorySyncEnterpriseResourcePoolSettings2: Settings retrieved, Status=NeverRun, LastUpdateTime=01/01/0001 00:00:00, ScheduledUpdates=False, ADGroupGuidCount=0, LogLevelManager
    Warning-ulsID:0x0018C61F has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Security    agsdb    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: Calling license check now; Thread.CurrentPrincipal.Identity.Name = 0#.w|*****\sharepointfarmsvc, Context.Username = i:0#.w|*****\sharepointfarmsvc, LogLevelManager Warning-ulsID:0x001920C1
    has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Security    agsdc    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: License check for BusinessObject method Admin.ResolveActiveDirectoryGroups passed - user i:0#.w|*****\sharepointfarmsvc (resuid=806f917d-85b6-e211-93ef-00155d0a5600) was licensed, LogLevelManager
    Warning-ulsID:0x001920C2 has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Security    agwmc    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: Access Granted for user i:0#.w|*****\sharepointfarmsvc on BusinessObject method Admin.ResolveActiveDirectoryGroups.  CheckFarmAdmin=False, CheckGlobalPerms=True, LogLevelManager Warning-ulsID:0x00196302
    has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Active Directory Sync    af8v6    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: ResolveActiveDirectoryGroups; resolving encodedClaims=c:0+.w|s-1-5-21-2100168755-2748282862-3037512304-1280, LogLevelManager Warning-ulsID:0x00162560 has no entities explicitly specified.  
     c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    General    ad2n8    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: Running command using non-transactioned Sql session., LogLevelManager Warning-ulsID:0x000DC362 has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Administration    agmy5    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: GetActiveDirectorySyncEnterpriseResourcePoolSettings2: Settings retrieved, Status=NeverRun, LastUpdateTime=01/01/0001 00:00:00, ScheduledUpdates=False, ADGroupGuidCount=0, LogLevelManager
    Warning-ulsID:0x0018C61F has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Active Directory Sync    af8vj    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: Entered ActiveDirectoryUtility::TryGetGroupInfoByClaim, LogLevelManager Warning-ulsID:0x00162549 has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.19    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Active Directory Sync    alv2g    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: Querying for fqdn/netbios mapping of server *****, LogLevelManager Warning-ulsID:0x002D5706 has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.20    w3wp.exe (0x3BE0)    0x0DDC    Project Server    Active Directory Sync    af8vl    Verbose    PWA:http://portal2013/PWA, ServiceApp:Project
    Server Service Application, User:i:0#.w|*****\sharepointfarmsvc, PSI: Entered ActiveDirectoryUtility::TryGetGroupInfo, LogLevelManager Warning-ulsID:0x0016254B has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f
    09/11/2013 10:31:49.20    w3wp.exe (0x3BE0)    0x0DDC    Project Server    General    aeby8    Medium    Error is: GeneralUnhandledException. Details: General
    Unhandled Exception in _Admin.ResolveActiveDirectoryGroups_ Attributes:  System.Collections.Generic.KeyNotFoundException: The given key was not present in the dictionary.     at Microsoft.Office.Project.Server.ClaimsHelper.GetFormsAuthenticationProviderName(Uri
    context, SPUrlZone zone)     at Microsoft.Office.Project.Server.BusinessLayer.ActiveDirectoryUtility.TryGetGroupInfo(String domain, String searchPath, String searchFilter)     at Microsoft.Office.Project.Server.BusinessLayer.ActiveDirectoryUtility.TryGetGroupInfoByClaim(String
    encodedClaim)     at System.Linq.Enumerable.WhereSelectArrayIterator`2.MoveNext()     at System.Linq.Buffer`1..ctor(IEnumerable`1 source)     at System.Linq.Enumerable.ToArray[TSource](IEnumerable`1
    source)     at Microsoft.Office.Project.Server.Wcf.Implementation.PWAImpl.<>c__DisplayClass10a.<AdminResolveActiveDirectoryGroups>b__109()     at Microsoft.Office.Project.Server.Wcf.Implementation.WcfMethodInvocation.InvokeBusinessObjectMethod(String
    businessObjectName, String methodName, IEnumerable`1 actions)  . Standard Information: PSI Entry Point:  Project User: i:0#.w|*****\sharepointfarmsvc Correlation Id: da702be3-ee1a-e311-93f8-00155d0a5600 PWA Site URL: http://portal2013/PWA SA Name:
    Project Server Service Application PSError: GeneralUnhandledException (42), LogLevelManager Warning-ulsID:0x00101622 has no entities explicitly specified.    c4f9419c-7789-a0b9-3d4a-941ceb42b25f

  • Project Server 2010 Active Directory Synchronization - duplicate Windows Name - Event ID 7734

    Environment: SharePoint Server 2010, Project Server 2010, SP2, DEC 2013 CU (Farm Build number: 14.0.7113.5001)
    Scenario: 
    Domain user has been added to the Active Directory group being synchronized with Project Server for the Team Members group.
    That user has participated as a team member in numerous projects, added documents, been assigned tasks, typical project stuff...
    Employee quits.
    AD account is deleted. (NOT deactivated or moved into another OU)
    Time passes...
    Employee gets rehired.  NEW AD account is set up: same display name, SamAccountName, email address, different GUID of course.
    Daily Active Directory job runs again and throws event ID 7734 and the sync ends with a partial fail.
    I understand why this is happening.  Solutions I've found point me to deleting the Enterprise Object resource in Project Server and then rerunning the sync.  Sure, this works BUT won't all of the previous documents, tasks,
    etc. be disassociated from that user?  If so, this is not ideal.
    2 questions:
    Is there a better way to deal with the fixing of the resource in Project Server to somehow link the old resource to the new resource allowing the sync to run successfully while still leaving the association to all old content intact?
    How are other organizations dealing with rehires when they have been added as resources in Project Server?  What is the best practice guidance from Microsoft on this?  Are other companies not actually deleting AD accounts when users leave organizations
    or are they putting them into a "ARCHIVE" OU or something like that? This happens at least half a dozen times a year at my company. We would like to keep our AD as clean as possible, but this appears to change our approach.
    Any suggestion/guidance is appreciated.

    For the question to relink the new account to the account which is already available in Project Server. You will have to update the WRES_AD_GUID to Null for the the Resource in MSP_RESOURCES table in the published database.
    Whenever a users gets synchronized to the PWA his ADGUID, SAMAccountName, Display Name, Email Address and DepartmentName is Synchronized from AD to Project Server. When the user was deleted and recreated the ADGUID got changed. During the next sync, project
    found the user with similar properties but different ADGUID which was updated in WRES_AD_GUID column in MSP_RESOURCES table. Hence it says that there is a duplicate account in the table with the same properties but a different ADGUID
    Nullifying the WRES_AD_GUID column value in MSP_RESOURCES table should get the user synchronized to Project server in the next sync.
    Cheers! Happy troubleshooting !!! Dinesh S. Rai - MSFT Enterprise Project Management Please click Mark As Answer; if a post solves your problem or Vote As Helpful if a post has been useful to you. This can be beneficial to other community members reading
    the thread.

  • Is it possible to switch from Office 365 online user management to Active Directory after Exchange online migration?

    If we utilize the Cutover method to migrate from on-premise Exchange (2007) to Office 365, which to my understanding will hand over user management/authentication to Office 365 online during the process, is possible to later switch from Office 365 user management
    to Active Directory (synced to a future local domain, or even possibly via AD federation single sign-on)? If so, how difficult is this process and is there any documentation available?
    Asking this because the organization  I'm working for plans to upgrade (re-do actually) its entire infrastructure. There will be a completely brand new domain/AD set up that's totally unrelated to the old one. At the same time, we also plan to migrate
    all emails (previously hosted locally on Exchange 2007) to Office 365 and get rid of local exchange. Now because we will set up new domain, we do not want to carry over the older AD to the cloud, hence we will not use the "Staged Migration". 
    So the plan is to to use "Cutover" migration first, which means all authentications will become Office 365 managed. That's fine for now. But later, after we set up our new domain and AD controller etc, we'd like to have Exchange Online switch back
    to syncing with our new on-premise AD. We'd also like to consider the AD Federation Services if it's not too complicated to set up.
    Your advice on this would be greatly appreciated!

    In principle, you cannot sync back from the cloud AD to the on-prem, yet. But you can take advantage of the soft-matching mechanism once you have the new AD in place:
    http://support.microsoft.com/kb/2641663
    Be careful though, as the moment you turn on Dirsync, all the matching users in the cloud will have their attributes overwritten. A very good idea is to do an 'export' of the cloud AD first, using the WAAD module for PowerShell and the Get-MsolUser cmdlets,
    which you can then use to compare or import data in the new on-prem AD. Some links:
    http://technet.microsoft.com/en-us/library/hh974317.aspx
    http://msdn.microsoft.com/en-us/library/azure/dn194133.aspx

  • Reinstalling AD Directory Sync

    I started seeing a lot of sync errors in on my ADFS server with Directory Sync installed. At first I thought it was due to an expired password, which I reset. However, when I went to update the credentials in the Sync Tool, it was throwing errors (argument
    cannot be null), and would not get past the service account credentials. I am now trying to reinstall the directory sync tool but the event logs indicate a problem installing SQL Express. Which I've in
    1)Database 3 cannot be autostarted during server shutdown or startup.
    2)The SQL Server Network Interface library could not deregister the Service Principal Name (SPN) [ MSSQLSvc/ADFSServer.domain.com:MSONLINE ] for the SQL Server service. Error: 0x200b, state: 15. Administrator should deregister this SPN manually to avoid
    client authentication errors.
    3)Microsoft SQL Express install returned error code -2068119551.
    4)Failed to uninstall the synchronization service. Error code:Could not find C:\Program Files\Windows Azure Active Directory Sync\Microsoft.Online.DirSync.Scheduler.exe. Please uninstall and reinstall the Windows Azure Active Directory Sync tool. Log off
    and back in and then run the uninstallation again. If the error persists, contact Technical Support.
    5)A network-related or instance-specific error occurred while establishing a connection to SQL Server. The server was not found or was not accessible. Verify that the instance name is correct and that SQL Server is configured to allow remote connections.
    (provider: SQL Network Interfaces, error: 26 - Error Locating Server/Instance Specified).
    Any thought on how to get this reinstalled and my sync going again?

    only those objects you wish to sync
    Mike Crowley | MVP
    My Blog --
    Planet Technologies

Maybe you are looking for

  • Non PO documents parked in FV60 cannot be posted through FBV0.

    Hi, I am trying to post  a document parked through FV60 in FBV0 Tcode, but the system says that the document is already posted in that compnay code even though it is in parked condition.. I tried posting some other parked documents but the system is

  • Bluetooth on Atheros AW-NB100H, no devices shown after scan.

    I bought a halfmini pci card with the atheros chipset for adding bluetooth to my netbook the chipsets are are AR1111 + AR1005. AR1005 being the bluetooth side which shows up as usb device and so far nothing is turning up any errors yet when i try to

  • Import Stichwörter Dateibrowser CS in Bridge CS2

    Hallo, auch wenn im englischen FAQ die Anleitung steht, so ist es mir doch nicht gelungen nach dieser Anleitung das Problem in der deutschen Version CS2 zu lösen. Also, wer kann helfen? Ich möchte die Stichwörter aus der Datei Stichwörter.psp (Dateim

  • Photos not showing up in MacOS Desktop

    I read in a response to a message about downloading photos the following: "However you can move photos as you have already seen by using the quick install tool." I don't undertand it what that stement meant.  Sooo my question is: Is there any way I c

  • Sonic connector -not supporting  Multi language

    Hi We are using the SONIC connector to show the SAP office mails in UWL notification tab , When the notification content is other than english , system is not supporting , it is giving the output as "???????" . but in the Task Tab every thing is perf