Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

AD new account creation failed due to password policies

SumathiSomala
All-Star
All-Star

Hi team,

I am trying to create new AD account from ARS saviynt.

Account creation getting failed with below error

Checking DN for CN=Help Test02,OU=Saviynt_Test,OU=Test Users,OU=XXX Users,DC=XX,DC=XX.Not FOund DN for CCN=Help Test02,OU=Saviynt_Test,OU=Test Users,OU=XXX Users,DC=XX,DC=XX. Error while creating account in AD - [LDAP: error code 53 - 0000001F: SvcErr: DSID-031A126A, problem 5003 (WILL_NOT_PERFORM), data 0 ]

So i removed password policies and SETRANDOMPASSWORD as FALSE 

Now account is created in AD with userAccountControl 546

Is password policies used in Saviynt should match with AD password policy complexity requirement (image attached).

Can any one help with password policies and how to pass this password to users?

Any help would be appreciated.

 

Regards,
Sumathi Somala

If this reply answered your question, please Accept As Solution and give Kudos.

4 REPLIES 4

pmahalle
All-Star
All-Star

Hi @SumathiSomala ,

Yes ideally Password policy in Saviynt connection and AD should be same. Saviynt will generate random password based on policy present in Saviynt, if password did not meet the policy is AD then account creation might be failed.

Also while sending password make sure to user LDAPS with port 636 and not LDAP in your URL.


Pandharinath Mahalle(Paddy)
If this reply helps your question, please consider selecting Accept As Solution and hit Kudos 🙂

Thanks @pmahalle 

yes using LDAPS with port 636 

I have attached the AD password policy can you help with password policy template?

Regards,
Sumathi Somala

If this reply answered your question, please Accept As Solution and give Kudos.

Hi @SumathiSomala ,

Create APPLICATION type password policy under Admin --> Identity Repository-->Password Polices and attach to your security system. Where you can create complex password policies.

Refer: https://docs.saviyntcloud.com/bundle/EIC-Admin-v23x/page/Content/Chapter02-Identity-Repository/Manag...


Pandharinath Mahalle(Paddy)
If this reply helps your question, please consider selecting Accept As Solution and hit Kudos 🙂

I tried @pmahalle 

SumathiSomala_0-1692267575952.png

 

Getting below error

Error while creating account in AD - [LDAP: error code 53 - 0000001F: SvcErr: DSID-031A126A, problem 5003 (WILL_NOT_PERFORM), data 0 ]

Regards,
Sumathi Somala

If this reply answered your question, please Accept As Solution and give Kudos.