[Freeipa-users] Active Directory --> IPA Password Sync

Joseph, Matthew (EXP) matthew.joseph at lmco.com
Fri Apr 5 14:52:42 UTC 2013


Hello,

I imagine this is a common issue/question when trying to implement the password sync between AD and IPA.

We have two Windows 2003 domain controllers (for redundancy) so when a user issues a password change on the Windows side there is no primary domain controller that it will always use for password changes.
So right now IPA is only getting 50% of the Password changes that are done through Windows due to password changes going through both domain controllers.
Looking through the documentation IPA will only allow a password sync agreement between 1 AD and 1 IPA server.

Is there a solution for this issue? How are people getting around this?

Thanks,

Matt
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20130405/ccb8990a/attachment.htm>


More information about the Freeipa-users mailing list