Bidirectional eDir driver, not able to sync password through publisher channel
I have two eDir Servers, I am trying to migrate User with password from remote to source eDir (where Bidirectional eDirectory is running)
For this I have configured Bidirectional eDirectory driver in source eDir and set ignore in all attributes of driver filter for subscriber channel. In this driver I am using non-secure connection and password sync type is "Sync Distribution Password".
When I use "Migrate into Identity Vault" option of Driver through iManager, that user is successfully sync in source eDir without password, password was not coming in driver log.
In both eDir server, we have configured the same password policy and assigned that policy in user container with settings "Enable Universal Password" and "Synchronize Distribution Password when setting Universal
Password" is "true".
I have attached the driver's trace, filters and password policy screen shot, please help me on this?
Do we really need IDM Engine in remote eDir to sync password from remote to source? In my setup we have IDM Engine in both Server.
In both eDir we have installed IDM 22.214.171.124 and eDir 9.1.4.
I have done below changes and now I am getting an info in my driver's log "[08/21/20 13:32:39.467]:Bi-directional eDirectory ST:Bi-directional eDirectory: INFO : Filtering out universal password operation, because it is not supported with selected password sync version. Modify the driver parameter if you wish to change."
1. Configured Filtered Replica in remote eDir using iManager and added CN, Surname, nspmDistributionPassword, nspmPasswordKey inside User class.
2. Check the checkbox in Password policy in remote eDir "Allow admin to retrieve password" inside section Universal Password Retrieval
3. In remote eDir, Modify Trustees ==> select the User container ==> Add admin user as an trustee and assign all Rights including Supervisor.
I have attached my driver full log.