Hi,
I have the following error when I try to sync Freeipa 3.2.2 with Active 
Directory.
 reports: Update failed! Status: [-1 Total update abortedLDAP error: Can't 
contact LDAP server]
Failed to start replication

All current users sync with freeipa, but new users cannot. I have differents OU 
and I need to sync all users in my active directories. I use the following 
ipa-replica-manage switches to created the sync.
ipa-replica-manage connect --winsync 
--binddn='cn=Administrator,cn=Users,dc=domain,dc=com' --bindpw='' 
--cacert=/root/ADCA.cer --passsync='' 
--win-subtree='OU=test,OU=users,DC=domain,DC=com' windows-server-hostname
In the dirsrv logs I have the following error.
[12/Aug/2013:10:45:18 -0400] NSMMReplicationPlugin - Replication agreement for 
agmt="cn=meTo" (nigua:389) could not be updated. For replication to take place, 
please enable the suffix and restart the server[12/Aug/2013:10:45:18 -0400] 
NSMMReplicationPlugin - Replication agreement for agmt="cn=meTo" (nigua:389) 
could not be updated. For replication to take place, please enable the suffix 
and restart the server[12/Aug/2013:10:45:18 -0400] NSMMReplicationPlugin - 
Replication agreement for agmt="cn=me" (nigua:389) could not be updated. For 
replication to take place, please enable the suffix and restart the 
server[12/Aug/2013:10:45:18 -0400] NSMMReplicationPlugin - Replication 
agreement for agmt="cn=meTo" (nigua:389) could not be updated. For replication 
to take place, please enable the suffix and restart the 
server[12/Aug/2013:10:45:18 -0400] NSMMReplicationPlugin - agmt="cn=meTo" 
(nigua:389): Replica has no update vector. It has never been 
initialized.[12/Aug/2013:10:45:18 -0400] - Entry 


                                          
_______________________________________________
Freeipa-users mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/freeipa-users

Reply via email to