{"id":1034,"date":"2009-05-26T15:55:47","date_gmt":"2009-05-26T23:55:47","guid":{"rendered":"http:\/\/blogs.pugetsound.edu\/TSmaintenance\/?p=1034"},"modified":"2009-05-26T15:55:47","modified_gmt":"2009-05-26T23:55:47","slug":"active-directory-password-policy-was-temporarily-too-restrictive","status":"publish","type":"post","link":"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/2009\/05\/26\/active-directory-password-policy-was-temporarily-too-restrictive\/","title":{"rendered":"Active Directory password policy was temporarily too restrictive"},"content":{"rendered":"<p>The Active Directory password policy was inadvertently set to reject passwords that did not contain any special (non-alphanumeric) character, such as *#$% etc.  <\/p>\n<p>The problem began about 3\/21\/2009 and was corrected at 3:15pm on 3\/26\/2009.  During this period, anyone changing a password using Windows was instructed to include a special character.  <\/p>\n<p><strong>Passwords changed using Cascade Web during this period were not synchronized to Active Directory<\/strong>, so the new password did not work for Webmail, Windows, etc.  This can now be corrected by changing either the AD or OID password.<\/p>\n<p>The problem was corrected by deselecting the special character requirement in the AD password policy.<\/p>\n<p>Here is an example of the error in the ActiveExportUsers_Groups.trc log:<\/p>\n<p><code>Error in executing mapping DIP_LDAPWRITER_ERROR_MODIFY<br \/>\njavax.naming.OperationNotSupportedException: [LDAP: error code 53 - 0000052D: SvcErr: DSID-031A0FC0, problem 5003 (WILL_NOT_PERFORM), data 0<br \/>\n]<\/code><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Active Directory password policy was inadvertently set to reject passwords that did not contain any special (non-alphanumeric) character, such as *#$% etc. The problem began about 3\/21\/2009 and was corrected at 3:15pm on 3\/26\/2009. During this period, anyone changing &hellip; <a href=\"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/2009\/05\/26\/active-directory-password-policy-was-temporarily-too-restrictive\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":6,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[22,38],"tags":[],"class_list":["post-1034","post","type-post","status-publish","format-standard","hentry","category-failures","category-oid-sso"],"_links":{"self":[{"href":"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/wp-json\/wp\/v2\/posts\/1034","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/wp-json\/wp\/v2\/comments?post=1034"}],"version-history":[{"count":0,"href":"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/wp-json\/wp\/v2\/posts\/1034\/revisions"}],"wp:attachment":[{"href":"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/wp-json\/wp\/v2\/media?parent=1034"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/wp-json\/wp\/v2\/categories?post=1034"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blogs.pugetsound.edu\/tsmaintenance\/wp-json\/wp\/v2\/tags?post=1034"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}