Oneof the AD domains was no longer able to create accounts; Error: UNABLE TO PERFORM.
Account creation at AD Endpoint failed with "Unable to set Password - Reason: Unwilling To Perform" error
We found the following error in ADS log
15:46:18 - TID:0x359c Server: TESTXXXXADDS001.TESTADXXX.COM : Credentials: [SVC_CAIDM]
ADS->MODIFY: DN: [CN=Test User,OU=USERS,OU=State,OU=001,DC=TESTADXXX,DC=com] rc=53 (elapsed: 48 ms)
[REP] Attribute: unicodePwd ===> Values ...(suppressed)...
The problem was due to configuration in a third party (Hitachi password manager) utility. The customer resolved the configuration issue via the third party application.