Winsync fails with the error: "sync error -11 - LDAP error: connect error"

Solution Verified - Updated -

Issue

  • While trying to create replication agreement between IPA server and AD server the replication fails with the following errors.
ipa-replica-manage connect --winsync --binddn "cn=svc_ipa_sync,ou=ServiceAccounts,ou=ServiceAdmin,dc=example,dc=com" --bindpw password! --passsync password! --win-subtree 'ou=RH_Staff,dc=staff,dc=example,dc=com' --cacert /etc/openldap/cacerts/CA-cert.cer -v ad.example.com
Directory Manager password:

Update failed ! Status: [-11 - LDAP error: Connect error]
Failed to start replication
  • We have a Windows Certificate Authority Server setup and it is running on a separate server.( Not on the AD server)
    AD server is using SSL certificate issued by Windows Certificate Authority Server.

Environment

  • Red Hat Enterprise Linux 6.4
  • Windows Active Directory 2003
  • Windows Certificate Authority Server

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content