Azure AD Sync – Password Write-back Error During Install

I ran into an interesting EMS issue today when enabling Azure AD Sync. During the configuration wizard after I installed AADSync, selecting to enable bi-directional, I encountered an error at the last step saying password sync could not be enabled.

I haven’t been able to identify the root cause, but a workaround is:

  1. Reboot the AADSync server
  2. Open Task Scheduler
  3. Disable the AADSync Task
  4. Re-run the Directory Sync tool
  5. Use the same settings (making sure to use a .onmicrosoft.com account as your global administrator)
  6. Write-back configuration succeeds.