I am migrating users from an old IDM 3.0.1 Vault to a new IDM 3.5 vault
and then to AD (Win2k3).

I have Universal Password policies all matching correctly and set up right.

The accounts are getting created in the IDVault and being veto'ed on the
AD driver because nspmDistributionPassword is not available.

If I create a user in the Vault, the user is created in AD without issues.

How do I fix this?

Thanks.