MsolDirSyncFeatures and Azure AD connect settings show different values for the same setting - or am I mistaken ?

Akr ofly 256 Reputation points
2021-11-01T11:04:02.727+00:00

The value for the PasswordWriteBack from Get-MsolDirSyncFeatures shows a different value from within Azure AD connect, or am I mistaken here?

Note the marked settings in the attached screenshot and correct me if I have misunderstood or explain/advise if correct.

145512-aadc-conflict.jpg

Microsoft Entra
0 comments No comments
{count} votes

Accepted answer
  1. Akr ofly 256 Reputation points
    2021-11-03T16:28:05.167+00:00

    No possible answer on the horizon, I recommend that this question is taken out of circulation since password write back does work.

    It just seems like conflicting information from a technical point of view.


3 additional answers

Sort by: Most helpful
  1. Marilee Turscak-MSFT 33,801 Reputation points Microsoft Employee
    2021-11-01T22:58:12.197+00:00

    Hi @Akr ofly ,

    Could you please confirm that the password writeback connectivity in the Azure portal is showing up and running? If it is, then please toggle the password writeback service on and off and re-run the Powershell commands to see if it is reflecting.

    145625-image.png

    If you see a connectivity failure, then it might be one of the following issues:

    1) There might be a network connectivity problem.

    Double check that firewall isn't blocking anything and that outbound HTTPS access is required to the following addresses:

    *.passwordreset.microsoftonline.com
    *.servicebus.windows.net

    2) You may need to restart the Azure AD Connect Sync service, as shown in the screenshot:
    145550-image.png

    3) Disable and re-enable the password writeback feature. (Disable the feature and configure it. Then re-enable it and and reconfigure it.)

    4) It might not be enabled in Azure, or you could be missing some licensing. If this is the case, make sure you have the writeback enabled in Azure itself and you have the correct licensing applied.

    For full troubleshooting steps, see the Troubleshoot Password Writeback article.


  2. Andy David - MVP 141.1K Reputation points MVP
    2021-11-02T11:43:57.473+00:00

    I see the same settings as you and we have password writeback enabled and its working.


  3. Andy David - MVP 141.1K Reputation points MVP
    2021-11-06T12:48:33.057+00:00

    I don't know, seems to be that since its enabled in AADConnect , its just ignored by the MsolDirSyncFeatures command.

    It states here that which commands apply:
    https://learn.microsoft.com/en-us/powershell/module/msonline/get-msoldirsyncfeatures?view=azureadps-1.0

    147003-image.png