US English (US)
GB English (UK)

Contact Us

If you still have questions or prefer to get help directly from an agent, please submit a request.
We’ll get back to you as soon as possible.

Please fill out the contact form below and we will reply as soon as possible.

  • Create ticket
English (US)
US English (US)
GB English (UK)
  • Home

Requirements for AD to AD password sync

Learn if password synchronization between two Active Directory domains is possible.

Written by Neil Langston

Updated at October 26th, 2023

Contact Us

If you still have questions or prefer to get help directly from an agent, please submit a request.
We’ll get back to you as soon as possible.

Please fill out the contact form below and we will reply as soon as possible.

  • Getting Started
  • FAQs
  • API Documentation
  • Integrations
  • Migration Agent
  • Directory Synchronisation
  • Remote DC agent
  • Remote Password Sync Agent
+ More

PowerSyncPro can bidirectionally copy the RC4 hash between Active Directory (AD) domains to allow the user to log on with the same password on both sides. 

 

If a Microsoft Tenant is involved to another tenant and AADC is used to sync AD to Azure AD. We can do a bidirectional sync here to allow Self Service Password Reset (SSPR) to be used in a target tenant even when the user is actually in a remote AD domain synced with PSP and not with AADC.

 

We use 

samlib.dll

and in particular 

SamSetInformationUser 

for password sync, so that we mitigate conflicts with endpoint protection.

 

We don’t do an Local Security Authority Subsystem Service (LSASS) injection for mainly that reason, as there is a greater chance of end point protection causing conflicts.

 

Our roadmap includes a password sync agent which will work when RC4 is disabled in Active Directory. The agent would need to be installed on every domain controller (DC) where a user may change their password or where a password reset may be done. We are looking at Q4 2023 to have this available and GA.

sync requirement ad password

Was this article helpful?

Yes
No
Give feedback about this article

Related Articles

  • Microsoft errors from the field
  • Intune Enrollment has not succeeded
  • Office Applications or Outlook failing to log in after migration
  • PowerSyncPro top 10 features
  • Migration in progress - Lock Screen and Legal Notice

Subscribe to Newsletter

Drop your email in the box below to sign up. We promise to keep our updates relevant and useful – and we’ll never share your details.

PowerSyncPro is the ultimate product for easing the pain and frustration during mergers, acquisitions, divestitures, and consolidations.

Terms & Conditions

  • FAQs
  • Privacy Policy
  • Cookies
  • Anti Slavery Notice

PowerSyncPro

  • Case Studies
  • Contact sales
  • Meet the Team
  • EULA

Get Connected

Room 73, Wrest House, Wrest Park, Silsoe, Bedford, England, MK45 4HR
info@powersyncpro.com

Twitter Youtube Linkedin

Knowledge Base Software powered by Helpjuice

Expand