Sorry to keep posting, but I could really use help. We are running
DirXML1.1a with the AD-Driver installed as a Edir to AD one way sync.
Everything is working great when the driver is set to run with the Admin
users permisions, but when I change it to a new user I created specifically
for the DirXML it can not create the nadLoginname attributre.

I have granted read and write permissions for the nadloginname attribute at
the root level for that user but in my dirxml logs it still shows err access
denied when trying to create it.

Has anyone using password sync used a user other than admin for the
AD-Driver, and if so what permissions did you give that user to be able to
create the nadloginname attribute?

Thanks in advance for any help!!