The following error can be found in the CMN Directory Connector log file (CMN.log):
Failed operations:
test user4 error: An error occured while creating object test user4:
The user has insufficient access rights.
Operations type: Provision
Source attributes:
Name=test user4
Path=CN=test user4,OU=Exchange Users,DC=tt,DC=com
ParentPath=OU=Exchange Users,DC=tt,DC=com
objectGuid=a8031c18-50cd-452d-8299-39b68c6df0eb
proxyAddresses=SMTP:testuser4@tt.com
mail=testuser4@tt.com
givenName=test
sn=user4
cn=test user4
sAMAccountName=testuser4
The following instructions will assist in verifying the rights of the Domino user account provided to the CMN Directory Connector:
1.) Open the Domino Administrator.
2.) Click the Files tab.
3.) Locate the Directory file (names.nsf).
4.) Right-click on the file and select Access Control | Manage...
5.) Verify that the Domino user account provided to the CMN Directory Connector has all of the necessary rights to create documents in the names.nsf database.
The following screenshot shows the recommended settings:
6.) Click on the Advanced tab on the Access Control List screen and locate the "Maximum Internet name and password" rights. In order for CMN to create users, this will need to be set to at least "Author". For CMN to be able to delete the contacts it creates, "Editor" rights will be required.
The following screenshot shows the recommended settings:
For more details about the "Maximum Internet name and password" settings, refer to IBM Technote Reference #:1229790 – "LDAP: error code 50 - Insufficient Access Rights' when adding users to Domino via LDAP"
© ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center