On Sat, 02 Jun 2012 14:56:02 +0000, nomad213 wrote:

> First:
> Have several users with UP enabled, but not set, thus causing the
> password sync status to be "Not Synchronized" between systems for the
> affected users. Resetting the password or a user login sets the UP, thus
> changing the status to "Synchronized", but wonder if anyone knows of a
> way to force the setting of the UP on users who do not have it set
> without resetting the password or having the users log in?

No. The only way to migrate "NDS password" to "Universal Password" is via
an NMAS enabled client login. Your only other alternative is to set the
password on the user (reset).

> Second:
> Synchronized groups are not getting the "Group Name" appropriately set
> in AD. Groups are getting a value that starts with a $ set. I applied
> the latest AD driver patch (3.5.17) on the remote loader, but did not
> seem to help. The Group and CN attribute are set to synchronized on the
> subscriber filter channel. Could anyone shed a light here on what could
> be causing the name attribute not to be properly set?

IIRC, this is actually a policy bug, not a shim bug. Get a level 3 trace
of a group being created and have a look. Post a URL to it here if you
need help figuring it out.

David Gersic dgersic_@_niu.edu
Knowledge Partner http://forums.novell.com

Please post questions in the forums. No support provided via email.