Ok maybe i didn't quite understand your question and i think i dont get at all the way of this works cause i only have one simple user account in AD with the right of replication and i never done any changes in AD's part is this could be the reason why nothing works ????!!!!!
2013/4/19 Aziza Lichir <aziza.lichir@xxxxxxxxx>
i did install DS on linux i just take control of it from windows cause it's easy to use the graphical interface and since i just wanna see how it works i just want to do a first sync with a simple connection no SSL/TLS for the moment.
2013/4/19 Grzegorz Dwornicki <gd1100@xxxxxxxxx>Let me get this right. You have configured the sync service on windows? What about configuration on DS part? Did you install certificates? What instructions did you follow?
19 kwi 2013 14:09, "Aziza Lichir" <aziza.lichir@xxxxxxxxx> napisał(a):ThanksSo i realy wuld appreciate some helpThe problem i'm facing now is that when i created a sync agreement (Onewaysync fromWindows) it shows that everything is fine but i don't have any replcated users my base is still empty and i have no error and i don't understand why.Hey,I didn't explain what i was doing exactely so i actualy have Windows XP computer with one virtual machine with Centos 6 which is the server 389 and since i have no graphical interface on it, i was obliged to install it on Windows. And in the other part of the network it exist the AD that i want to replicate on my virtuall machine.
2013/4/17 Grzegorz Dwornicki <gd1100@xxxxxxxxx>
Winsync require LDAPS for password sync. This domain user needs some privileges in ad - modifying, read, write on the synced subtree.
From ds point of view you configure normal user account for needs of sync with ad. This user doesn't need to be in your organization tree. You can place him in cn=config. I usually create account like cn=adsyncuser, cn=config without ocjectclasses providing normal system account attributes.
Hope this helps you
17 kwi 2013 16:40, "Aziza Lichir" <aziza.lichir@xxxxxxxxx> napisał(a):thanks for your helpHey,Thanks for your quick answer, for the moment I installed the 389 console on a WindowsXP machine and i want to know if i can replicate users from AD knowing that i only use a normal user account and without activating Ldaps ?
___________________________________________________________Aziza--
389 users mailing list
389-users@xxxxxxxxxxxxxxxxxxxxxxx
https://admin.fedoraproject.org/mailman/listinfo/389-users
--
389 users mailing list
389-users@xxxxxxxxxxxxxxxxxxxxxxx
https://admin.fedoraproject.org/mailman/listinfo/389-users
--
___________________________________________________________
Aziza Lichir
-- 389 users mailing list 389-users@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/389-users