| RSS | Twitter

Active Directory: one account, two passwords

November 11th, 2009

Lately I noticed something strange. I configured an ISA server as reverse proxy for OWA. The customer demanded the ability for users to change their password through OWA. I configured the OWA listener with LDAPS authentication against the Active Directory and enabled the option to select “I want to change my password after logging on” like shown below.

owa-login-password 

I tested the environment by logging in and changing the password. Everything looks okay and the password is changed correctly. I tried some extra test. I opened another browser and tried to login with the old password, which succeeded. I could now login with the old and the new password.

Strange to me…..so I tried some more test. The customer is using an SSL portal with RADIUS authentication to the same Active Director. So I tried to log in with the old and new password. I guess you know the answer. It was possible to login with both password. Another test was login in to the network components, which also use RADIUS against the Active Directory. Again the test were positive.

The last test was login in on a workstation. With this test, I could only login in with the new password and not the old one. Strange to me…… After one hour I tried again, and this time it was only possible to login with the new password.

I guess there is some kind of period where you can use both password. Maybe someone noticed this before and knows more about it…

Share and Enjoy:

  • Print
  • Digg
  • Sphinn
  • del.icio.us
  • Facebook
  • Mixx
  • Google Bookmarks
  • Blogplay
  • Hyves
  • Live
  • RSS
  • Slashdot
  • Twitter
  • Technorati
  • LinkedIn
  • Reddit
  • StumbleUpon
Print

Related Articles

Leave a Reply

  • my Tweetz

    • Preparing a LAN redesign. Currently creating an inventory of the physical location of all printers. Luckily I have switchmap!! #in 13 hrs ago
    • The game really was a HELL. Only one substitute and a 7 - 7 score at the end 2 days ago
    • I feel very tired and messed up from yesterdays carnaval and alcohol, but I have to play futsal in one hour. It's going to be hell!! 2 days ago
    • Oh yeah, wintersport is planned and booked. Heading to Saalbach Hinterglemm - Ski Unlimited http://bit.ly/1pj9Ht 2 days ago
    • @robmaaseu I use Feedburner from Google, which integrates with Twitter and Google Adsense in reply to robmaaseu 2 days ago
    • More updates...

    Powered by Twitter Tools

  • Advertisements