Question:
When creating a user using “Create a copy of a user” functionality, why does the task fail with the below error message?
[LDAP: error code 53 - 0000209A: SvcErr: DSID-031A0F94, problem 5003 (WILL_NOT_PERFORM), data 0
This problem may occur when you try to copy user data that cannot be written to Active Directory during the user creation. Data that cannot be written to Active Directory will originally exist when you try to create the user using copy option.
According to the Microsoft
Following 'User fields that cannot be imported' are protected system fields and cannot be modified through an LDIFDE import:
badPasswordTime
badPwdCount
lastLogoff
lastLogon
logonCount
memberOf
objectGUID
objectSid
primaryGroupID
pwdLastSet
sAMAccountType