Solved

Self service password reset

Posted on 2010-11-08
9
2,567 Views
Last Modified: 2013-04-22

We are currently looking at options for self service password resets.    We have a mixed environment {macs, linux ,windows, etc) and use AD 2008R2 for authentication.
   Our current product does a decent job of password resets, but is quite expensive to license.    We will have over 70-100,000 users that will use this.

Some of the features that are needed.
     -User should be able to reset password from any web browser.  If they do not know their password, they should be able to reset their password via challenge/response
    -if the product is able to send verification codes via sms that would be a bonus.
    -ad attribute updates would also be a bonus
    -We also need a web based helpdesk feature.  Meaning, our helpdesk staff should be able to reset passwords of accounts.  A number of staff members use machines on non windows machines
    -decent logging/reporting/collection of all events.

I looked at a number of products but have not found many that fit this criteria {that didn't cost (150k)   It would be preferred for this to run under IIS, but other options could work as well.

Does anyone know of any options that meet this list?  {Gee..I'm not asking too much :) }     Any information would be appreciated.
 

0
Comment
Question by:fertigj
9 Comments
 
LVL 27

Assisted Solution

by:KenMcF
KenMcF earned 250 total points
Comment Utility
Take a look at rDirectory, the next version will support multiple browsers. Right now it only supports IE.
http://www.namescape.com/Products/rDirectory.aspx

Also Take a look at Courion

http://www.courion.com/products/PasswordCourier.html
0
 
LVL 57

Accepted Solution

by:
Mike Kline earned 250 total points
Comment Utility
Microsoft makes Forefront Identity manager which can provide this feature and more.   Video here   http://technet.microsoft.com/en-us/edge/self-service-password-reset-with-fim-demo.aspx

Namescape also makes a product (haven't tested it myself).  They have a video up also

http://www.youtube.com/watch?v=TxBMSUMnKjQ
http://www.namescape.com/Solutions/SolutionsPasswordManagement.aspx


Thanks
Mike
0
 
LVL 1

Author Comment

by:fertigj
Comment Utility
It is really important that all browsers {or ie/firefox/opera/safari} are supported.   That said the product does look interesting.   I'll have to keep an eye on this.    

I have also read decent reviews on Courion,  my only issue is the pricepoint.   A lot of decent products are pricing themselves out of consideration.     It is hard to justify a large expense for a single service  {even something as important as this}
0
 
LVL 27

Expert Comment

by:KenMcF
Comment Utility
I was incorrect about the browser support with namscape. It is their rDirectory product that only supports IE.

Cross-Browser Support
End-users can use Internet Explorer, Safari, or FireFox to access myPasswordto reset their Windows password, accounts, create Password Reset Profiles, or change their passwords.

http://www.namescape.com/Products/myPasswordSelfServiceReset/Features.aspx
0
What Is Threat Intelligence?

Threat intelligence is often discussed, but rarely understood. Starting with a precise definition, along with clear business goals, is essential.

 
LVL 1

Author Comment

by:fertigj
Comment Utility
I'll have to take a closer look at this product.   This does look interesting.
0
 
LVL 24

Expert Comment

by:Awinish
Comment Utility
0
 
LVL 1

Author Closing Comment

by:fertigj
Comment Utility
Was hoping for open source/free..but can't fault the answers.  Just the question :)
0
 
LVL 5

Expert Comment

by:FirstSentinel
Comment Utility
Open Source you say?.......

HERE IT IS!!!!!  

   VA TEch Self Service
0
 
LVL 21

Expert Comment

by:Joseph Moody
Comment Utility
We were looking for a free way of doing this as well. Our final solution used PowerShell to provide a password reset service.

It isn't as pretty as a GUI based option but our users can now reset their passwords by texting from their cell.

http://deployhappiness.com/reset-user-passwords-with-ad-self-service-portal/
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Join & Write a Comment

Suggested Solutions

[b]Ok so now I will show you how to add a user name to the description at login. [/b] First connect to your DC (Domain Controller / Active Directory Server) SET PERMISSIONS FOR SCRIPT TO UPDATE COMPUTER DESCRIPTION TO USERNAME 1. Open Active …
In this article, we will see the basic design consideration while designing a Multi-tenant web application in a simple manner. Though, many frameworks are available in the market to develop a multi - tenant application, but do they provide data, cod…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now