User must change password next logon
- From: "skip" <shofmann@xxxxxxx>
- Date: Wed, 4 Mar 2009 09:13:53 -0800
Hello
I am noticing something very strange with how AD enforces the attribute "user must change password at next logon" We are running in a Windows 2003 native mode domain with a mix of 2008 and 2003 DC. The Domain naming master is a Windows 2008 box, and it is located in a different site than the user community, but we have a very high speed connection connecting the two sites, so latency is not an issue. I set the attribute user must change password at next logon on 500 user accounts, all client machines are running XP sp3. What we are seeing is the first time a user tries to log on to the domain, they dont get prompted to change the password, if they log off and then try and log back on then they get the prompt. I set the attribute user must change password 2 hours before the first user tried to log in so its not a replication issue. I dont understand why the DC isnt forcing the user to change there password at the first logon attempt from the user?
Many thanks
.
- Follow-Ups:
- Re: User must change password next logon
- From: Meinolf Weber [MVP-DS]
- Re: User must change password next logon
- From: skip
- Re: User must change password next logon
- From: Florian Frommherz [MVP]
- Re: User must change password next logon
- Prev by Date: installing printers in clients using AD
- Next by Date: Re: User must change password next logon
- Previous by thread: installing printers in clients using AD
- Next by thread: Re: User must change password next logon
- Index(es):
Relevant Pages
|