[Samba] azure AD Connect | passwords not syncing

Lesfourmisduweb blog at lesfourmisduweb.org
Fri Nov 11 16:40:27 UTC 2016


Le 11/11/2016 à 16:02, mj via samba a écrit :
> Hi Simon,
>
> On 11/11/2016 03:00 PM, Lesfourmisduweb via samba wrote:
>> For my script :
>>
>> https://github.com/sfonteneau/script_modify_password_googleapps_and_office365 
>>
> Thanks, I'll take a look.
>
>> Another idea: AD refuses to change a password on a clear connection.
>> It may be the same for the consultation of the hash? Have you set up
>> lts or ldaps with ad ?
> But I'm not sure I understand why that would be relevant. We have 
> installed the microsoft AD Connect tools on a windows 2012 server 
> (thus all native) and  no ldap config/access required anywhere.

Exact

I do not have the answer but it interests people.:
https://lists.samba.org/archive/samba/2014-May/181467.html

On the todo list to make I see that the implementation of dirsync is 
planned:
https://wiki.samba.org/index.php/Samba4/DRS_TODO_List#Implement_dirsync_control_for_LDAPexact

I think "AD Connect" uses this mechanism.

Good luck!

Simon



>
> It's all microsoft tools talking with other microsoft tools.
>
> (only the DCs happen to be samba)
>
> So I'm not sure where I would configure ldap/tls..?
>
> MJ
>




More information about the samba mailing list