Solved

Active Directory Locking Out Issue

Posted on 2006-07-07
4
176 Views
Last Modified: 2013-12-04
Hi Guys,

I have a user on our network who is experiencing an unusual problem. When any user on our network leaves their machine for more than five minutes it locks their machine requiring their login (or an admins) credentials to unlock the machine. This particular user has an issue where when her machine locks out, no matter what credentials she supplies it will not unlock her machine.

She is a thin client user connecting to our Citrix farm, and I have to reset her session for her to be able to use her machine again. I initially thought the issue was a password discrepency on our domain controllers but I have manually reset her password on each DC to no effect. Occasionally if she tries enough times it will let her in, however, another strange thing is that after five failed login attempts the users AD account should get locked. This doesn't happen for her when trying to unlock her terminal when it repeatedly fails.

I'm stumped as to what the issue is and any suggestions are welcome. I've even tried getting her to type out her password in her username box in case her keyboard wasn't working properly but it is working as it should.

She has tried on other thin clients too and the same occurs!

Help!

Thanks

Z
0
Comment
Question by:Big-Z213
  • 3
4 Comments
 
LVL 37

Accepted Solution

by:
bbao earned 500 total points
ID: 17066962
how many DCs do you have? are you sure that all the DCs are well synchronized?
0
 
LVL 1

Author Comment

by:Big-Z213
ID: 17071011
We have 4 DCs and they are all well synced. I have tried resetting the password on each DC manually in case this was the problem but to no avail!
0
 
LVL 1

Author Comment

by:Big-Z213
ID: 17080159
Upped question to 500 points as it seems it's harder than first thought...
0
 
LVL 1

Author Comment

by:Big-Z213
ID: 17356431
The users password expired and when they changed it the problem went away!? Kind of suggests sync issues with the DCs, but manual password resets on each one, or premature password changes by the user didn't resolve it. Perhaps there was a syncing issue so will award points to bbao.
0

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
OSSEC, can't pull in System and Application logs. 11 114
Excel files protected mode 4 50
Sweet32 Vulnerability in Microsoft IIS7.5 6 944
Penetration Testing home based work 3 91
No security measures warrant 100% as a "silver bullet". The truth is we also cannot assume anything but a defensive and vigilance posture. Adopt no trust by default and reveal in assumption. Only assume anonymity or invisibility in the reverse. Safe…
Recently, I read that Microsoft has analysed statistics for their security intelligence report. It revealed: still, the clear majority of windows users do their daily work as administrator. An administrative account is a burden, security-wise. My ar…
In a recent question (https://www.experts-exchange.com/questions/29004105/Run-AutoHotkey-script-directly-from-Notepad.html) here at Experts Exchange, a member asked how to run an AutoHotkey script (.AHK) directly from Notepad++ (aka NPP). This video…

839 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question