ocs 2007; replication access denied.

Posted on 2009-04-17
Last Modified: 2013-12-19
I am having issues with OCS 2007 server.  I can add a new user, but ocs is not replicating to the dc and thus will not allow the user to sign in to the chat client
error on DC side;

Log Name:      Directory Service

Source:        Microsoft-Windows-ActiveDirectory_DomainService

Date:          4/17/2009 3:01:45 PM

Event ID:      2896

Task Category: Replication

Level:         Error

Keywords:      Classic

User:          XYZ\RTCService

Computer:     XYZDCP01.XYZ.local


A client made a DirSync LDAP request for a directory partition. Access was denied due to the following error. 


Directory partition: 


Error value: 

8453 Replication access was denied. 


User Action 

The client may not have access for this request.  If the client requires it, they should be  assigned the control access right "Replicating Directory Changes" on the  directory partition in question.

Open in new window

Question by:CoyotesIT
    LVL 10

    Expert Comment

    Need more info.. Std,Ent,any changes to AD policies, etc.. check perms on the acct enabling users, etc.
    LVL 8

    Author Comment

    Sorry,  it is  2007 standard edition.  we have not made any changes to AD or it policies  and the system has been up and running fine for almost 2 years
    LVL 10

    Expert Comment

    Sorry, I have only seen that with EE version, in which case lcscmd command line was used to reregister the pool...  might have to call MS for this one...

    If it were me, since you can build an OCS box in less than an hour, I would just export the users using DBIMPEXP , rebuild, then DBIMPEXP /Import.

    LVL 8

    Author Comment

    We did end up contacting Microsoft on this issue it seems like the OCS RTC Users had lost there permissions on the active directory domain and they reran the domain prep and it began working correctly.

    Accepted Solution

    Question PAQ'd, 500 points refunded, and stored in the solution database.

    Featured Post

    Are your corporate email signatures appalling?

    Is it scary how unprofessional your email signatures look? Do users create their own terrible designs and give themselves stupid job titles? You can make this a lot easier for yourself by choosing an email signature management solution from Exclaimer today.

    Join & Write a Comment

    I guess that all of us know that caching the data usually increase the performance, but I worried if all of us are aware about the risk that caching the data provides and how to minimize this.  That’s the reason why I decided to write this short art…
    APEX (Application Express) is used to develop a web application from Oracle. SQL Workshop is one of the tools that comes with Oracle APEX to query or modify the database objects or to make any changes to the structure.
    Video by: Steve
    Using examples as well as descriptions, step through each of the common simple join types, explaining differences in syntax, differences in expected outputs and showing how the queries run along with the actual outputs based upon a simple set of dem…
    Polish reports in Access so they look terrific. Take yourself to another level. Equations, Back Color, Alternate Back Color. Write easy VBA Code. Tighten space to use less pages. Launch report from a menu, considering criteria only when it is filled…

    755 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    25 Experts available now in Live!

    Get 1:1 Help Now