Tips for finding Knowledge Articles

  • - Enter just a few key words related to your question or problem
  • - Add Key words to refine your search as necessary
  • - Do not use punctuation
  • - Search is not case sensitive
  • - Avoid non-descriptive filler words like "how", "the", "what", etc.
  • - If you do not find what you are looking for the first time,reduce the number of key words you enter and try searching again.
  • - Minimum supported Internet Explorer version is IE9
Home  >
article

KB-5057: How to resolve O365Coexistence errors from directory synchronization reports

Centrify Identity Service, App Edition ,  

12 April,16 at 11:07 AM

Applies To: Centrify for SaaS/Office 365

Problem:

Office 365 provisioning is failing for objects. The synchronization report shows that the reason is due to an O365Coexistence. 

Here is an example of the error:

 
Users failed: 
username@domain.com => username@domain.com
Reason: Operation failed on object username@domain.com using O365Coexistence. AdministrativeServiceErrorCode: AttributeValueMustBeUnique Unable to update this object because the following attributes associated with this object have values that may already be associated with another object in your local directory services:

[UserPrincipalName username@domain.com;]

or
 
[ProxyAddresses smtp:username@domain.com,smtp:username@other.domain.com,smtp:user.alias@domain.com...] 

Correct or remove the duplicate values in your local directory. Please refer to http://support.microsoft.com/kb/2647098 for more information on identifying objects with duplicate attribute values. 



Resolution:

This issue occurs due to a duplicate entry of the UserPrincipalName or email aliases for the object in question. To resolve this issue, determine duplicate values and values that conflict with other AD directory synchronization objects by using one of the following methods. 

  • Method 1:
  • Method 2:
  • Method 3:
    • Determine attribute conflicts that are caused by objects that weren't created in Azure AD through directory synchronization. To do this, see the following Microsoft Knowledge Base article: 
    • https://support.microsoft.com/en-us/kb/2647098
  • Method 4:
    • Perform the following command using the Windows Azure Active Directory Module for Windows Powershell, then clean up the duplicated entries of the problematic objects: 
    • Get-MsolUser -All | where-object { $_.proxyaddresses -like "smtp:username@domain.com"} | FL 


 

Still have questions? Click here to log a technical support case, or collaborate with your peers in Centrify's Online Community.