jeudi 27 mai 2010

User Profile Synchronization Service Requirements

To ensure that the User Profile Synchronization Service starts and your SharePoint servers be able to import and synchronize correctly with your AD services the above action should be performed before starting the configuration process of this service.
- The farm service account should be member of the local administrator group of the SharePoint server hosting the User Profile Synchronization Service.
- The service account of the User Profile Synchronization Service should have the permission of Replicate Directory Changes on the configuration partition of your AD.
  
1Start ADSI Edit
 image
2Right click ADSI Edit and then  click Connect to…
 image
3Check Select a well known Naming Context , select Configuration from the dropdown list and the click Ok
 image
4Right click the Configuration entry and click Properties on the context menu
 image
5On the Security tab add the User Profile Synchronization Service account and give him the permission Replicating Directory Changes
 image
- The User Profile Synchronization Service account should be delegated the Replicating Directory Changes on the domain :

1From ADUC console, right click the domain name and then click Delegate Control…
 image
2Click Next
 image
3Add the User Profile Synchronization Service Account and then click Next
 image
4Check Create a custom task to delegate and then click Next
 image
5Click Next
 image
6Check Replicating Directory Changes in permissions list  and then click Next
 image
7Click Finish
 image

Aucun commentaire:

Enregistrer un commentaire