Hi, I have installed Azure AD Connect on a Windows Server 2012 computer to synchronize with an Azure AD instance (using password hashes). I have filtered the synchronization to apply to a custom OU only. The user accounts synchronize fine, the groups synchronize as well, only they are empty in Azure as the group memberships fail to synchronize.
In the Synchronization Service Manager I can see completed-discovery-errors on theDelta Import operation: for each group to synchronize there is a Discovery Error of typereference-value-not-ldap-conformant on the member attribute.
The IdFix utility does not suggest any fix.
Any suggestion?