FWIW, the same thing happened to me when we setup our FDS-AD sync
agreements. I can't say definitely, but the problem went away after we
stopped using the Fedora Console for user and group management. We wrote our
own tools to manage the directory data, and the disappearing users problem
went away.
So I got the Windows Sync Agreement working.
Windows side:
cn=Users,dc=foo,dc=org
FDS side:
ou=Users,l=Portland,c=US,dc=foo,dc=org
SSL certs are properly exchanged between the two, user passwords sync
correctly, and accounts removed or added on either side are sync'd
correctly.
Then suddenly le