LDAP connection Error

image
I am trying to Manage Window server 22 LDAP credentials with Vault dynamically. But facing this issue during rotating credentials.
Error

Error rotating root password 1 error occurred: * LDAP Result Code 53 “Unwilling To Perform”: 0000001F: SvcErr: DSID-031A126C, problem 5003 (WILL_NOT_PERFORM), data 0

In my experience, that may be a result of password complexity rules mismatches between the target account and what Vault is configured to use.

e.g., target account requires a minimum 20 characters but Vault is configured for 16 characters.

I have used default vault policy and my window server policy is: