[Samba] Changing expired Samba AD password during Windows login

Marco Gaiarin gaio at sv.lnf.it
Mon Jan 22 09:17:07 UTC 2018


Mandi! Ken McDonald via samba
  In chel di` si favelave...

> Thanks for the help, however I don't think your suggestion applies in my
> case. On a fresh install of Samba 4.7.4 AD you cannot change a user password
> on a logged in PC through cntl-alt-del -> ChangePassword because the default
> MinAge is 1 days. I had to use the "samba-tool domain passwordsettings set
> --min-pwd-age=0" command to make the logged-on style of password change
> work.

Policies have that default, AFAIK.


> Maybe I don't understand your suggestion. What GPO should I adjust so that a
> domain user can change their own expired password when they log into a
> domain-connected Windows desktop OS?

Something like this:

	http://www.grouppolicy.biz/2011/08/tutorial-how-to-setup-default-and-fine-grain-password-policy/

-- 
dott. Marco Gaiarin				        GNUPG Key ID: 240A3D66
  Associazione ``La Nostra Famiglia''          http://www.lanostrafamiglia.it/
  Polo FVG   -   Via della Bontà, 7 - 33078   -   San Vito al Tagliamento (PN)
  marco.gaiarin(at)lanostrafamiglia.it   t +39-0434-842711   f +39-0434-842797

		Dona il 5 PER MILLE a LA NOSTRA FAMIGLIA!
      http://www.lanostrafamiglia.it/index.php/it/sostienici/5x1000
	(cf 00307430132, categoria ONLUS oppure RICERCA SANITARIA)



More information about the samba mailing list