IDM 3.5.1 on
OES 2
eDir 8.8
eDir > AD sync using remote loader on win 2003.
I had previously posted this problem on another thread here...
Trying to Create Group in Edir. and sync to AD
I was unable to add a user to a group from eDir and have the change synchronize to AD. I was getting this error ...
10:36:03 FE4F8BA0 Drvrs: AD ST:
DirXML Log Event -------------------
Driver: \WFISD\WFISD\SERVICES\prod\AD
Channel: Subscriber
Object: \WFISD\WFISD\AUSTIN\Sysop
Status: Error
Message: <ldap-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">
<client-err ldap-rc="68" ldap-rc-name="LDAP_ALREADY_EXISTS">Already Exists</client-err>
<server-err>00000526: UpdErr: DSID-031A0F4F, problem 6005 (ENTRY_EXISTS), data 0
</server-err>
<server-err-ex win32-rc="1318"/>
</ldap-err>
Now I have narrowed the issue. Some groups in eDir on the "Other" tab have a DirXML-Assocation that looks like: 1AD.prod."big long number"
These groups I am able to modify all day long and synchronize to AD.
Other groups in eDir under the other tab have a DirXML-Association of 4AD.prod.services.wfisd with no value after it.
These groups I cannot edit and have sycnhronize to AD.
However, if I go into AD and delete these group and make a change to the group in eDir, it will resync add the correct DirXML-Association in eDir and all the members come with the group. I can then modify this group all day long.
What is going on here? Can someone help explain why this is happening?