Solved

Account lockout reset script.

Posted on 2008-10-31
2
636 Views
Last Modified: 2012-08-14
I am looking for a solution to account lockout problem.  One of the networks(a large church) I am a admin for has one specific account that all the students use in their web cafe.  At least once a week I get a call from the youth director asking me to unlock the account in active directory because one of the kids had tried the password to many times.  Is there a way to script a program or MMC that I can give the youth director access to that will unlock the account at a click of a button? I don't want to give him access to the entire directory and know its only as simple as unchecking a box in the account properties, but that requires me to connect to the VPN, log in the server and then open AD.  Any suggestions?
0
Comment
Question by:Intech-LLC
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 70

Accepted Solution

by:
KCTS earned 250 total points
ID: 22855053
You will need to delegate the right to unlock accounts to the user - ot better still deleate the right to unlock accounts to a group and make the use a member of that group - even if initially they are the only member - it will make it so much easier when you want to change the user rights by simply adding/removing them from the group.
The process for delegating the right is detailed at http://support.microsoft.com/kb/294952

Once the use has the delegated right then you can use a script such as that at http://www.tech-geeks.org/geeklog/article.php?story=20040308172322741 to unlock the account
0
 

Author Closing Comment

by:Intech-LLC
ID: 31512241
Exactly what I was looking for! Thank you so much.  
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In-place Upgrading Dirsync to Azure AD Connect
This article demonstrates probably the easiest way to configure domain-wide tier isolation within Active Directory. If you do not know tier isolation read https://technet.microsoft.com/en-us/windows-server-docs/security/securing-privileged-access/s…
The viewer will learn how to count occurrences of each item in an array.
In this seventh video of the Xpdf series, we discuss and demonstrate the PDFfonts utility, which lists all the fonts used in a PDF file. It does this via a command line interface, making it suitable for use in programs, scripts, batch files — any pl…

737 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question