Solved

users not allowed to change password

Posted on 2004-04-01
6
187 Views
Last Modified: 2013-12-04
having a problem with a few 98 and XP users not able to change their logon password when old password has expired

operating in a 2000 domain with no restrictions set in group policy

all along users were able to change their password every 28 days

anything else i should be checking? nothing in the eventviewer leading to a solution

any suggestions would be greatly appreciated!
0
Comment
Question by:dcreedon
6 Comments
 
LVL 31

Expert Comment

by:Gareth Gudger
ID: 10731895
Apart from the GPO you can also specify in the individual user accounts in ADUC that "Users Cannot Change Their Password."

Check that on the users you ar ehaving problems with.
0
 
LVL 67

Expert Comment

by:sirbounty
ID: 10731982
From an XP client...

Click Start->Run->MMC
File - > Add/Remove Snap in
Add
Resultant Set of Policy
Follow the wizard to completion.
Ok back to the console
Now check
Expand the workstation, Computer Config
Windows Settings/Security Settings
Account Policy/Password Policy
Check through these and make sure nothing is awry
Do the same for Account Lockout Policy...
0
 
LVL 12

Accepted Solution

by:
trywaredk earned 500 total points
ID: 10732247
New Windows 2000 RestrictAnonymous registry value
http://www.jsiinc.com/SUBF/TIP2600/rh2625.htm
0
Enterprise Mobility and BYOD For Dummies

Like “For Dummies” books, you can read this in whatever order you choose and learn about mobility and BYOD; and how to put a competitive mobile infrastructure in place. Developed for SMBs and large enterprises alike, you will find helpful use cases, planning, and implementation.

 

Expert Comment

by:markisl
ID: 10858004
Try adding in Domain Users into the Administrator Group.

Right-Click on My Computer and select Manage.
From there go to System Tools | Local Users and Groups | Groups
Double Click on Administrators and click on Add
Select the user that owns that PC or other group (I use Domain Users)
0
 
LVL 12

Expert Comment

by:trywaredk
ID: 10863178
MARKISL..."Try adding in Domain Users into the Administrator Group"

The local admin group does not exist in win98, but it's a great security risk to do that.
http://www.experts-exchange.com/Security/Win_Security/Q_20576959.html

Why you should not run your computer as an administrator
http://www.microsoft.com/windows2000/en/server/help/default.asp?url=/windows2000/en/server/help/windows_security_whynot_admin.htm
0
 
LVL 12

Expert Comment

by:trywaredk
ID: 11024891
:o) Glad I could help you - thank you for the points
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The term "Bad USB" is a buzz word that is usually used when talking about attacks on computer systems that involve USB devices. In this article, I will show what possibilities modern windows systems (win8.x and win10) offer to fight these attacks wi…
In a recent article here at Experts Exchange (http://www.experts-exchange.com/articles/18880/PaperPort-14-in-Windows-10-A-First-Look.html), I discussed my nine-month sandbox testing of the Windows 10 Technical Preview, specifically with respect to r…
Email security requires an ever evolving service that stays up to date with counter-evolving threats. The Email Laundry perform Research and Development to ensure their email security service evolves faster than cyber criminals. We apply our Threat…

828 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question