Hi Fabien, the answer is "yes" to both of them. I would check if your sync user is member of Domain Admins group, or have equivalent rights. It seems your issue could be related to permissions. You could find how to grant those permissions in Microsoft documentation, for instance, here: https://technet.microsoft.com/en-us/library/hh296982.aspx regards, German. ----- Original Message ----- > From: "Fabien Gasbayet" <fgasbayet@xxxxxxxxxxxxxxxxxxxxxxxxxx> > To: 389-users@xxxxxxxxxxxxxxxxxxxxxxx > Sent: Friday, August 28, 2015 12:46:22 PM > Subject: replica from DS to AD > > > > Hi, > > > > I have 2 questions. > > > > 1 - On this diagram : > > https://access.redhat.com/documentation/en-US/Red_Hat_Directory_Server/9.0/html/Administration_Guide/Windows_Sync.html#Windows_Sync-About_Windows_Sync > > > > Password replication seems bi-directional… > > > > But on my attemps… > > > > from DS to AD, I can sync users but passwords are always blank. > > > > Only if I change passwords on AD, they’ll be replicated on DS. > > > > 2- If I delete an user on DS and lauch the replication… The user is not > removed on AD. > > > > So, is it possible to sync password from DS to AD ? > > And is it possible to delete users on DS with replica on AD ? > > > > Thanks a lot > > > > Best regards > > > > Fabien > > > > -- > 389 users mailing list > 389-users@xxxxxxxxxxxxxxxxxxxxxxx > https://admin.fedoraproject.org/mailman/listinfo/389-users -- 389 users mailing list 389-users@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/389-users