Link to home
Start Free TrialLog in
Avatar of patron
patronFlag for India

asked on

To Change Password at Fisrt RDP for Windows 2012 Server

When trying to RDP Win 2012 Server saying -
Must change password before logging in the first time
on Win 2012 RDP Session and hence i am not able to login is no option coming to change password -snap attached

How can we fix this for win 2012 and 2016 servers
-5B95F84F6E634831.jpg
Avatar of Mahesh
Mahesh
Flag of India image

The functionality is available only for local logins, not for remote sessions

Either logon to workstation locally and system will enforce you to change expired password or as admin reset password
Avatar of patron

ASKER

Avatar of patron

ASKER

It is not expired ,it is required to be changed at first login and physical machine
Is rdweb setup and running? Then please use these steps to offer users a password change, which will solve your problem: https://social.technet.microsoft.com/wiki/contents/articles/10755.windows-server-2012-rds-enabling-the-rd-webaccess-expired-password-reset-option.aspx
Result:
User generated image
Avatar of patron

ASKER

Thanks @ McKnife

Where to configure this rdweb -the machine from where am trying RDP ie opening mstsc ?
what if IIS is not there or if it is already in use by othr app ?

Rdweb is supported by all OS ie 2003/2008/2012/2016 ?

my need is actually for new user created locally on win 2012 server but need to change password @fisrt login -so no other way to login to targeted  win 2012 box
RDWeb is available as a role on 2008 and higher.
IIS will be installed with it automatically. You configure it at the server and the steps are in my link.
Avatar of patron

ASKER

Fine ,but my need for server where am unable to login anyhow , as to configure RD web we need to login  first?
I don't understand.
You, as admin, configure rdweb. rdweb is a website that users can reach without logging on, first. On that website, you will be able to place a link to a password change site if you follow the instructions from my link.
Avatar of patron

ASKER

am not admin but got some cred. to login which is asking to reset pwd before login to 2012 but no option ,Rdweb is something we did requested earlier to  id admin team configuring our access ,but no result so looking for something can help me in this situation?
If you could make your admins turn off network level authentication ("NLA") at the server, then a normal (non-remoteapp) RDP connection would let you change your password when expired. Else, there is no way but RDWeb.
Avatar of patron

ASKER

Turn off network level authentication ("NLA") at the server -will there be any risk if we make it off ?
RDWeb is not possible as we dont have appropriate right to login before and configure Redweb

What should be best approach for local cred to be used @first login , so that user will be able to change password or if we need to skip change password at first login
ASKER CERTIFIED SOLUTION
Avatar of McKnife
McKnife
Flag of Germany image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of patron

ASKER

Thanks