<html>
  <head>
    <meta content="text/html; charset=ISO-8859-1"
      http-equiv="Content-Type">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    <div class="moz-cite-prefix">On 01/31/2014 02:34 PM, Todd Maugh
      wrote:<br>
    </div>
    <blockquote
cite="mid:6FB698E172A95F49BE009B36D56F53E226A831@EXCHMB1-ELS.BWINC.local"
      type="cite">
      <meta http-equiv="Content-Type" content="text/html;
        charset=ISO-8859-1">
      <div style="direction: ltr;font-family: Tahoma;color:
        #000000;font-size: 10pt;">Ok that time i got output<br>
      </div>
    </blockquote>
    <br>
    Something is not right.  There is no windows sync agreement.<br>
    <br>
    Did you see my earlier reply, about the previous ldapsearch -d 1
    output, asking if the hostname in the certificate in AD was the same
    as the actual AD hostname?  And forward and reverse DNS is working?<br>
    <br>
    <br>
    <blockquote
cite="mid:6FB698E172A95F49BE009B36D56F53E226A831@EXCHMB1-ELS.BWINC.local"
      type="cite">
      <div style="direction: ltr;font-family: Tahoma;color:
        #000000;font-size: 10pt;">
        <br>
        [<a class="moz-txt-link-abbreviated" href="mailto:root@se-idm-01.boingo.com">root@se-idm-01.boingo.com</a> slapd-BOINGO-COM]$ ldapsearch -LLLx
        -b "cn=config" -D  "cn=directory manager" -W
        'objectclass=nsds5replicationagreement'<br>
        Enter LDAP Password: <br>
        dn:
cn=meTose-idm-02.boingo.com,cn=replica,cn=dc\3Dboingo\2Cdc\3Dcom,cn=mappin<br>
         g tree,cn=config<br>
        cn: meTose-idm-02.boingo.com<br>
        objectClass: nsds5replicationagreement<br>
        objectClass: top<br>
        nsDS5ReplicaTransportInfo: LDAP<br>
        description: me to se-idm-02.boingo.com<br>
        nsDS5ReplicaRoot: dc=boingo,dc=com<br>
        nsDS5ReplicaHost: se-idm-02.boingo.com<br>
        nsds5replicaTimeout: 120<br>
        nsDS5ReplicaPort: 389<br>
        nsDS5ReplicatedAttributeList: (objectclass=*) $ EXCLUDE memberof
        idnssoaserial<br>
          entryusn krblastsuccessfulauth krblastfailedauth
        krbloginfailedcount<br>
        nsDS5ReplicaBindMethod: SASL/GSSAPI<br>
        nsDS5ReplicatedAttributeListTotal: (objectclass=*) $ EXCLUDE
        entryusn krblasts<br>
         uccessfulauth krblastfailedauth krbloginfailedcount<br>
        nsds50ruv: {replicageneration} 52e15369000000040000<br>
        nsds50ruv: {replica 3 <a class="moz-txt-link-freetext" href="ldap://se-idm-02.boingo.com:389">ldap://se-idm-02.boingo.com:389</a>}
        52e15372000100030000 52<br>
         ebf423000000030000<br>
        nsds50ruv: {replica 4 <a class="moz-txt-link-freetext" href="ldap://se-idm-01.boingo.com:389">ldap://se-idm-01.boingo.com:389</a>}
        52e153d5000200040000 52<br>
         ebf628000000040000<br>
        nsruvReplicaLastModified: {replica 3
        <a class="moz-txt-link-freetext" href="ldap://se-idm-02.boingo.com:389">ldap://se-idm-02.boingo.com:389</a>} 00000000<br>
        nsruvReplicaLastModified: {replica 4
        <a class="moz-txt-link-freetext" href="ldap://se-idm-01.boingo.com:389">ldap://se-idm-01.boingo.com:389</a>} 00000000<br>
        nsds5replicareapactive: 0<br>
        nsds5replicaLastUpdateStart: 20140131210414Z<br>
        nsds5replicaLastUpdateEnd: 20140131210414Z<br>
        nsds5replicaChangesSentSinceStartup:: NDozLzAg<br>
        nsds5replicaLastUpdateStatus: 0 Replica acquired successfully:
        Incremental upd<br>
         ate succeeded<br>
        nsds5replicaUpdateInProgress: FALSE<br>
        nsds5replicaLastInitStart: 0<br>
        nsds5replicaLastInitEnd: 0<br>
        <br>
      </div>
    </blockquote>
    <br>
  </body>
</html>