The error Dn-Attribute-failure
happens when duplicate attribute values exist for 2 or more objects in the on-premises domain but those values cannot be assigned to multiple users in Azure AD
To resolve this error, you need to correct the duplicate attributes in your on-premises AD all the users who are part of the affected group. After making the changes in your local AD, Run a full sync cycle:
Start-ADSyncSyncCycle -PolicyType Initial
You can use the idfix tool to find: https://microsoft.github.io/idfix/
You can mark it 'Accept Answer' and 'Upvote' if this helped you
Regards,
Abiola