Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

Active Directory and Office 365 Won't Sync

Posted on 2014-11-04
1
Medium Priority
?
2,423 Views
Last Modified: 2015-01-06
We use Windows Azure Active Directory Sync Service to synchronize the user accounts in our AD with Office 365.  Currently the Azure AD Sync Service is stopped and attempts to restart it have been unsuccessful.  The Event Log says it won't start because the Forefront Identity Manager Synchronization Service is not running and that the Azure AD Sync Service is dependent upon it.

Attempts to restart the FIM Aync Serivce have been unsuccessful. When attempting to start it Event ID 7024 appears in the system log in the event viewer and says "the FIM Synchronization Service failed to start with server specific error %%2149781504".  Event ID 6028 simultaneously appears in the APP log in the event viewer and says, "The server encryption keys could not be accessed.  Verify that the service account has permissions to the following registry key, hkey local machine\microsoft\forefront\2010\synchronization service."  The service account the FIM Sync service uses does have full permissions to that key.

Any information on what we can do to get the FIM Sync Service running so that the Azure AD Sync service will run would be greatly appreciated.  Thanks in advance.
0
Comment
Question by:sswmoore
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 43

Accepted Solution

by:
Vasil Michev (MVP) earned 2000 total points
ID: 40423892
Just reinstall it, or use the newly released AadSync tool: http://msdn.microsoft.com/en-us/library/azure/dn790204.aspx

Otherwise, check the local groups (FIMSyncAdmins and/or ADSyncAdmins) and make sure the account running the service is added .
0

Featured Post

Is Your AD Toolbox Looking More Like a Toybox?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Uncontrolled local administrators groups within any organization pose a huge security risk. Because these groups are locally managed it becomes difficult to audit and maintain them.
How to deal with a specific error when using the Enable-RemoteMailbox cmdlet to create a mailbox in the cloud-based service, for an existing user in an on-premises Active Directory.
In this Micro Tutorial viewers will learn how to restore single file or folder from Bare Metal backup image of their system. Tutorial shows how to restore files and folders from system backup. Often it is not needed to restore entire system when onl…
This tutorial will walk an individual through the process of installing of Data Protection Manager on a server running Windows Server 2012 R2, including the prerequisites. Microsoft .Net 3.5 is required. To install this feature, go to Server Manager…

705 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question