Symantec IGA

  • 1.  How to set pwdLastSet value for newly created user at AD endpoint?

    Posted Sep 22, 2018 02:35 PM

    How to set pwdLastSet value for newly created user at AD endpoint?

     

    I know there is an option in AD endpoint settings to enable change password in password reset. Which is working fine, incase reset password done. 

     

    Our requirement is to make pwdLastSet to -1 when user is created initially, this is required to make sure for change password if user login from windows Machine/System.

     

    Thanks! Alok



  • 2.  Re: How to set pwdLastSet value for newly created user at AD endpoint?

    Broadcom Employee
    Posted Sep 24, 2018 10:39 AM

    It is my understanding the AD pwdLastSet attribute must be 0 for user to be prompted to change password at next login.



  • 3.  Re: How to set pwdLastSet value for newly created user at AD endpoint?

    Posted Sep 24, 2018 11:58 AM

    correct, do you have any idea. How we can get this by default OOB.



  • 4.  Re: How to set pwdLastSet value for newly created user at AD endpoint?
    Best Answer

    Broadcom Employee
    Posted Sep 25, 2018 04:59 AM

    Have you tried setting the "User Must Change Password at Next Logon” in the account template?

     



  • 5.  Re: How to set pwdLastSet value for newly created user at AD endpoint?

    Posted Sep 26, 2018 03:05 PM

    Yeah that's seems to be an option. Let me try.

     

    Thanks! Alok



  • 6.  Re: How to set pwdLastSet value for newly created user at AD endpoint?

    Posted Sep 27, 2018 01:56 AM

    yes this setting is working as expected. 

     

    Regards! Alok



  • 7.  Re: How to set pwdLastSet value for newly created user at AD endpoint?

    Posted Sep 26, 2018 03:00 PM

    yes that's correct.



  • 8.  Re: How to set pwdLastSet value for newly created user at AD endpoint?

    Posted Sep 26, 2018 02:29 PM

    You can set the option in AD account template. This will make sure the user must change the password on the first login