atlante
February 20, 2024, 7:05am
1
Good morning, I have configured UCS as DC and installed the “Active Directory-compatible Domain Controller” app. I configured the password policy, but when the password expires windows does not require it to be changed. Suggestions?
sambila
February 20, 2024, 6:35pm
2
Hi,
this sounds for me like this article:
UCS follows two different concepts. The password expiry date in LDAP
is adjustable for each user but the password settings in samba4 have
global effect as usual in AD. That is why we can not synchronize both
settings. This raises sometimes the following question.
The user password is expired but the user can still login on a windows client?
The following possibilities could cause the Problem
Have you set the password expirey in samba4? You can check the settings with the following command:
…
which is connected to this:
How to Align Password Policies across Directory Services
Environment
There are several environments where you want to align the password settings so the replication won’t have any issue with differing configurations.
The most common environment is an UCS with Samba/AD (Samba4).
An UCS joint into a Microsoft/AD
AN UCS joint into a Microsoft/AD and also providing a Samba/AD
Note: All these scenarios need to have the same password settings to avoid problems in password sync.
Where to find the…
Is this what you are looking for?
kind regards
sambilanet