Solved

Is it possible to change the password for all users in the AD at the same time using the same password?

Posted on 2008-06-12
15
270 Views
Last Modified: 2012-05-05
I need to change all the users passwords at one time to the same passwords.  I have 200 users and some are remote.  I would like to find a quick and easy way of doing this.  Can I do this through Active Directory.  I do not want the users involved.  All the users are running Windows XP.
0
Comment
Question by:NWVLCIT
  • 6
  • 4
  • 3
  • +1
15 Comments
 
LVL 8

Expert Comment

by:pzozulka
ID: 21774212
In Active Directory find the "Organization Unit (OU)" you want to change passwords on. Highlight all users within the OU, Right-Click, and choose to Reset Password.
0
 
LVL 8

Accepted Solution

by:
Share-IT earned 100 total points
ID: 21774219
0
 
LVL 8

Expert Comment

by:pzozulka
ID: 21774223
Sorry, never mind the above, I thought that was an option.

You can make all your users change the password at next login through AD.
0
 

Author Comment

by:NWVLCIT
ID: 21774227
I can not have the users involved because I dont trust them.
0
 

Author Comment

by:NWVLCIT
ID: 21774246
Share-IT

It is definitely a way of doing it but I am hoping to not have to pay for a piece of software.
0
 
LVL 8

Expert Comment

by:Share-IT
ID: 21774256
There's a free trial download. ;)
0
 
LVL 8

Expert Comment

by:pzozulka
ID: 21774263
Hmm...thats quite a pickle if you don't trust your users. I mean, you will have to disclose the password to them one way or another. If you are looking for a strong password, and feel that your users will enter a weak one there is a Group Policy Setting under the path below that covers this:

Computer Configuration > Windows Settings > Security Settings > Account Policies > Password Policy:

Enable "Password must meed complexity requirements"
Enable "Minimum password length"
Enable "Maximum password age"


0
Threat Intelligence Starter Resources

Integrating threat intelligence can be challenging, and not all companies are ready. These resources can help you build awareness and prepare for defense.

 

Author Comment

by:NWVLCIT
ID: 21774265
Share-IT

Yes and thank you.  If I do not get another way then yours would be the best option.
0
 
LVL 70

Assisted Solution

by:KCTS
KCTS earned 100 total points
ID: 21774278
You can use the DSmod command
eg

dsmod user "cn=user01, cn=users, dc=mydomain, dc=com" -pwd abc1d123
dsmod user "cn=user02, cn=users, dc=mydomain, dc=com" -pwd abc1d123
dsmod user "cn=user03, cn=users, dc=mydomain, dc=com" -pwd abc1d123


0
 

Author Comment

by:NWVLCIT
ID: 21774304
KCTS
Isnt DSmod for Server 2008?  I am running 2003
0
 
LVL 8

Expert Comment

by:Share-IT
ID: 21774329
good call KCTS. Will need to use csvde to get a list of users though.

csvde -d "ou=target OU,ou=2nd OU,ou=1st OU,dc=domain,dc=local" -p onelevel -f C:\users.csv
(as shamelessly stolen from this link - http://www.experts-exchange.com/OS/Microsoft_Operating_Systems/Server/Windows_2003_Active_Directory/Q_23368702.html
0
 
LVL 8

Expert Comment

by:Share-IT
ID: 21774369
It's on 2003 as well.
0
 
LVL 70

Expert Comment

by:KCTS
ID: 21774420
DSmod is in both 2003 and 2008 - but not 2000
0
 

Author Comment

by:NWVLCIT
ID: 21779052
Pzozulka

When I say I dont trust the users I mean they are stupid and are not able to follow basic instructions.  I am afraid they will not change the password themselves.
0
 

Author Closing Comment

by:NWVLCIT
ID: 31466765
Thanks everyone for the help.  I will look into the DSmod for future reference and for the short term I will try the program that Share-IT suggested.
0

Featured Post

Do You Know the 4 Main Threat Actor Types?

Do you know the main threat actor types? Most attackers fall into one of four categories, each with their own favored tactics, techniques, and procedures.

Join & Write a Comment

Suggested Solutions

Today, still in the boom of Apple, PC's and products, nearly 50% of the computer users use Windows as graphical operating systems. If you are among those users who love windows, but are grappling to keep the system's hard drive optimized, then you s…
In this article, we will see the basic design consideration while designing a Multi-tenant web application in a simple manner. Though, many frameworks are available in the market to develop a multi - tenant application, but do they provide data, cod…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…

706 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

15 Experts available now in Live!

Get 1:1 Help Now