Univention Bugzilla – Bug 56723
AD-Connector sync from objects - ldap.NO_SUCH_OBJECT
Last modified: 2023-10-10 16:29:31 CEST
UCS: 5.0-4 errata750 Installed: adconnector=12.0 samba-memberserver=4.16 samba/role: memberserver server/role: domaincontroller_master connector/ad/mapping/syncmode: read In a customer case, we noticed in support that the AD connector had a bug in its handling. The customer had a corrupt LDAP DB, here is a small excerpt from the traceback ldap.OTHER: {'desc': 'Other (e.g. implementation specific) error', 'info': 'DN index delete failed'} univention.admin.uexceptions.ldapError: LDAP error: Other (e.g. implementation specific) error: Index creation failed. We could fix this error with the following article https://help.univention.com/t/problem-ldapserver-does-not-start-anymore/18157 Now it seems that there are OUs or objects in Microsoft AD and not in LDAP. This inconsistency causes rejections and the AD Connector does not try to create the objects or synchronise them correctly with the OU. The only workaround at the moment is to manually resync the objects with. /usr/share/univention-ad-connector/resync_object_from_ucs.py