I haven't tested this, but it might be possible. See Microsoft KB article 303972. -Glenn. http://support.microsoft.com/kb/303972/ ---------- Original Message ----------- From: Nicholas Byrne <nicholas.byrne at quadriga.com> To: "General discussion list for the Fedora Directory server project." <fedora-directory-users at redhat.com> Sent: Fri, 01 Dec 2006 17:05:09 +0000 Subject: Windows Sync without Domain Admin? > Hi all, > > Is it possible to do a syncronisation of a windows peer without the > windows user who i use to bind being a domain admin? I have a read > only user with which i can run ldapsearch and find all users data in > the AD directory but using the same user to sync with fails. The > replication status says "total update completed" but i see no > updates to the my FDS directory. > > If i modify this user in AD to be a domain admin it works correctly, > but what i want to know is why can't i use a read-only user to sync? > Is there any way around this? > > Thanks > Nick >