用户配置文件同步服务完全同步错误" [英] User Profile Synchronization service " full synchronization error"
本文介绍了用户配置文件同步服务完全同步错误"的处理方法,对大家解决问题具有一定的参考价值,需要的朋友们下面随着小编来一起学习吧!
问题描述
HI,
我已经开始在UPS中进行完全同步,但是当我在FIM中检查同步在步骤5"中时,它停留在33%.在第5步中,请求已到达域控制器服务器,但计数没有任何变化.连接状态 是过时".
I have started full synchronization in UPS, but it got stuck in 33% when i checked in FIM it the synch was in "step 5". in step 5 the request was reaching domain controller server but there wasn’t any count changes. the Connection status was "obsoletion ".
完全同步尚未完成,如何解决此问题.
Full synchronization was not completed, how to resolve this issue.
环境:SharePoint 2010
Environment : SharePoint 2010
UPS帐户具有" 复制目录更改 访问权限
UPS account has "Replicating Directory Changes" access
推荐答案
您好,
此处是官方指南供您参考.
- 它必须对要与之同步的域具有复制目录更改"权限.有关更多信息,请参见授予 在配置文件同步的授予Active Directory域服务权限"部分中,对域的复制目录更改"权限 过程参考文章.
- 如果域控制器正在运行Windows Server 2003,同步帐户必须是Windows 2000以前版本的Compatible Access内置组的成员.了解更多信息, 请参见 部分 用于配置文件同步的目录域服务权限"过程参考文章.
- 如果是NetBIOS名称的域与完全限定的域名不同,同步帐户必须对cn = configuration具有复制目录更改"权限 容器.例如,如果NetBIOS域名是contoso,而标准域名是contoso-corp.com,则必须在cn = configuration容器上授予复制目录更改"权限.有关更多信息,请参见 授予 在为配置文件同步授予Active Directory域服务权限"的cn = configuration容器 部分中复制目录更改权限.程序参考文章.
- 如果要导出从SharePoint Server到AD&DS的属性值,同步帐户必须具有创建子对象"(此对象和所有后代)和写入" 与之同步的组织单位(OU)的所有属性(此对象和所有后代)权限.有关更多信息,请参见 授予 在授予用于配置文件同步的Active Directory域服务权限"的创建子对象和写入权限"部分中过程参考文章.
- It must have Replicate Directory Changes permission on the domain that you will synchronize with. For more information, see the Grant Replicate Directory Changes permission on a domain section of the "Grant Active Directory Domain Services permissions for profile synchronization" procedural reference article.
- If the domain controller is running Windows Server 2003, the synchronization account must be a member of the Pre-Windows 2000 Compatible Access built-in group. For more information, see the Add an account to the Pre-Windows 2000 Compatible Access groupsection of the "Grant Active Directory Domain Services permissions for profile synchronization" procedural reference article.
- If the NetBIOS name of the domain differs from the fully qualified domain name, the synchronization account must have Replicate Directory Changes permission on the cn=configuration container. For example, if the NetBIOS domain name is contoso and the fully qualified domain name is contoso-corp.com, you must grant Replicate Directory Changes permission on the cn=configuration container. For more information, see the Grant Replicate Directory Changes permission on the cn=configuration container section of the "Grant Active Directory Domain Services permissions for profile synchronization" procedural reference article.
- If you will export property values from SharePoint Server to AD DS, the synchronization account must have Create Child Objects (this object and all descendants) and Write All Properties (this object and all descendants) permissions on the organizational unit (OU) that you are synchronizing with. For more information, see the Grant Create Child Objects and Write permission section of the "Grant Active Directory Domain Services permissions for profile synchronization" procedural reference article.
- 用户配置文件同步服务在以下环境下运行农场帐户.服务器场帐户需要特定权限才能配置配置文件同步, 服务器场帐户必须是同步服务器上Administrators组的成员.配置用户配置文件同步服务后,可以删除此权限.
- The User Profile Synchronization service runs under the farm account. The farm account requires specific permissions to configure profile synchronization, The Farm account must be a member of the Administrators group on the synchronization server. You can remove this permission after you have configured the User Profile Synchronization service.
此处是链接.
此处是链接.
最好的问候,
Lee
这篇关于用户配置文件同步服务完全同步错误"的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!
查看全文