Solved

Smart Device Password change when updating Windows password

Posted on 2014-04-18
12
382 Views
Last Modified: 2014-04-18
We are a running Acrive sync with Windows 2008 R2 and Exchange 2010. We are implementing a group policy where users will need to update their passwords every 90 days. The users also carry one or more smart devices.

Does changing the password in Windows Server 2008 R2 have an effect on how folks continue to download their email on their personal devices (iPhone, iPad, Droid devices, etc.) . We were under the impression that a user would need to update their personal device every time their Windows password changes, but when we updated the Windows password and WITHOUT touching the personal devices, email continued to flow to the smart phones. Should we be worried or is this how it's designed to work?

Thank you
0
Comment
Question by:htamraz1
  • 5
  • 3
  • 2
  • +1
12 Comments
 
LVL 25

Assisted Solution

by:Mohammed Khawaja
Mohammed Khawaja earned 100 total points
ID: 40008564
it all depends.  Blackberry BES does not require user to change passwords and this maybe true for some other MDM devices.  ALSO NOTE THAT CHANGING PASSWORD MAY TAKE FEW MINUTES DEPENDING ON YOUR AD infrastructure.  if you are using phones/tablets connecting to Exchange without using MDM solution should prompt for password when polling for email.   this could become an issue and you should educate your users on how to change password on multiple devices.
0
 

Author Comment

by:htamraz1
ID: 40008600
Thank you
What is MDM?
0
 
LVL 25

Expert Comment

by:Tony Giangreco
ID: 40008618
If you change a user's password and they have an exchange account on that server or domain, then they need to update the password on their phones for email.
0
Optimizing Cloud Backup for Low Bandwidth

With cloud storage prices going down a growing number of SMBs start to use it for backup storage. Unfortunately, business data volume rarely fits the average Internet speed. This article provides an overview of main Internet speed challenges and reveals backup best practices.

 
LVL 25

Expert Comment

by:Mohammed Khawaja
ID: 40008695
MDM is Mobile Device Management software such as AirWatch, SAP Afaria or one from Citrix which allows centralized administration and policy management (ie users cannot install apps, apps deployment, etc)
0
 

Author Comment

by:htamraz1
ID: 40009016
TG-TIS
Is their an explanation for email continues to deliver to personal device despite changing the password in Windows, but not on the device?
0
 
LVL 25

Expert Comment

by:Tony Giangreco
ID: 40009047
Yes, they could have their business ail being forwarded to their personal email acct which is also on their phone.
0
 
LVL 63

Assisted Solution

by:Simon Butler (Sembee)
Simon Butler (Sembee) earned 400 total points
ID: 40009199
How long did you wait before coming to the conclusion that the password change wasn't required on the mobile device?
It is certainly true that the change isn't effective immediately. That is because ActiveSync works on a session basis and it is only when that session ends (which can be days) and then attempts to re-authenticate that the new password would be required. If you want instant requirement for the change then run IISRESET which ends all sessions and makes the clients reconnect.

Simon.
0
 

Author Comment

by:htamraz1
ID: 40009305
TG-TIS, forwarding is not the case.

Simon - your argument makes sense. Is this documented somewhere online?
0
 
LVL 25

Expert Comment

by:Tony Giangreco
ID: 40009384
From my experience, when you upgrade a password in Active Directory, that security change is immediate. there shouldn't be any waiting period unless your active directory is in terrible shape.
0
 

Author Comment

by:htamraz1
ID: 40009426
TG-TIS
That may be true, but did you see the comment by Simon in regard to activesync session issues and having to possibly run IISRESET. The change took effect immediately with our on-premise equipment. My question is specifically about why our mobile devices did not see the change right away.
0
 
LVL 63

Accepted Solution

by:
Simon Butler (Sembee) earned 400 total points
ID: 40009772
I knew I had seen it officially.
http://support.microsoft.com/kb/2612821

Simon.
0
 

Author Closing Comment

by:htamraz1
ID: 40009807
Thank you. The last response with the support article really cleared this up.
0

Featured Post

Enterprise Mobility and BYOD For Dummies

Like “For Dummies” books, you can read this in whatever order you choose and learn about mobility and BYOD; and how to put a competitive mobile infrastructure in place. Developed for SMBs and large enterprises alike, you will find helpful use cases, planning, and implementation.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Marketers need statistics and metrics like everybody else needs oxygen. In this article we explain how to enable marketing campaign statistics for Microsoft Exchange mail.
Possible fixes for Windows 7 and Windows Server 2008 updating problem. Solutions mentioned are from Microsoft themselves. I started a case with them from our Microsoft Silver Partner option to open a case and get direct support from Microsoft. If s…
This tutorial will walk an individual through setting the global and backup job media overwrite and protection periods in Backup Exec 2012. Log onto the Backup Exec Central Administration Server. Examine the services. If all or most of them are stop…
This video shows how to quickly and easily add an email signature for all users on Exchange 2016. The resulting signature is applied on a server level by Exchange Online. The email signature template has been downloaded from: www.mail-signatures…

773 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question