Error when copying a user object in ActiveRoles Management Console The following error is generated in the ds.log file
ADSI error: 00000057: LdapErr: DSID-0C090C3E, comment: Error in attribute conversion operation, data 0, v1db1
This is caused by an incorrectly formatted attribute on the source user account and the Built-in Policy has been disabled or the scope removed that format these attributes during user object copy or creation.
Look for Built in policies that have been blocked or disabled and ensure they are Enable and not blocked to the location where the user copy is being performed. See Screenshot: Policy Scope
These Built-in Policies should all be active and have a scope to the location the user is being copied to. See Screenshot: Built-in Policies for location in the ActiveRoles Server Management Console.
Built-in Policy - AD LDS - Default Rules to Generate Properties
Built-in Policy - Default E-mail Alias
Built-in Policy - Default Logon Name
Built-in Policy - Default Rules to Generate Properties
Built-in Policy - Default Rules to Validate Object Names
See https://support.quest.com/activeroles-server/kb/8605 for how to enable DS.log for ActiveRoles Server.