[Samba] Is password writeback working between MS Entra connect and samba 4 AD?

Kamal Chikh echioukh k_chikhechioukh at hotmail.com
Tue Apr 29 13:38:24 UTC 2025


Hello,

Our AD environment consists of three Samba 4 AD domain controllers, version "4.21.4-SerNet-RedHat-6.el8" installed on Linux machines "Rocky Linux release 8.10 (Green Obsidian)".

We've configured the MS Entra Connect synch agent on a Windows Server 2019 computer, and everything is working fine, including synchronizing user password hashes. However, password rewrite doesn't seem to work. Version of agent :  Microsoft Entra Connect version is 2.4.129.0.

Moreover, when we try to change the user password in MS365 from https://passwordreset.microsoftonline.com, we get:

We're sorry! You can't unlock your account because your organization is currently experiencing connectivity issues.

The logs of the Windows server on which the agent is installed contain logs with Event ID 31019 with "information" level like following:

TrackingId: 6591d31f-22b6-4e05-96ab-889ecb0267e5, HeartBeat for Namespace: ssprdedicatedsbprodweu, Endpoint: fd6c8907-4b39-4643-8c93-2e1c3317314c_e5a40063-ccfb-429f-a646-81059b8ef239, Details: Version: 5.0.922.0

I followed the troubleshooting steps described on the page https://learn.microsoft.com/en-us/entra/identity/authentication/troubleshoot-sspr-writeback, but without success.

Can password writeback work with Samba4 AD?

Feel free to ask me for more information on this topic if you need it.

Best Regards,
__________________________

kamal Chikh Echioukh


More information about the samba mailing list