zzOzz / pwm

Automatically exported from code.google.com/p/pwm
0 stars 0 forks source link

PWM stops changing passwords once config is locked. #547

Closed GoogleCodeExporter closed 9 years ago

GoogleCodeExporter commented 9 years ago
What steps will reproduce the problem?
1. Login to configured pwm instance, ensure configuration is locked
2. Attempt to change password
3. Receive "bad password" error even though password meets both AD and PWM's 
requirements,

What is the expected output? What do you see instead?

I expect my password to change, like it does before the config is locked,
(the password was changed minutes before using the same system and server with 
the config unlocked) but instead I receive a "badpassword" error, even the auto 
generated passwords will not apply. Detailed error messages are disabled when 
the config is locked but I've enabled them so you can see the error I'm 
receiving. Two SSes below

http://puu.sh/7iSAl.jpg

http://puu.sh/7iSrA.jpg

This makes no sense to me because the only configuration change has been  
locking the config.

What version of PWM are you using?
1.7

What ldap directory and version are you using?
MS AD 2k8R2

Please paste any error log messages below:

New password does not meet rule requirements { 4006 PASSWORD_BADPASSWORD (error 
setting password for user 'CN=ADM 
TEST,OU=XXX,OU=XXX,OU=XXX,ou=XXX,dc=XXX,dc=XXX'' 
com.novell.ldapchai.exception.ChaiPasswordPolicyException: [LDAP: error code 19 
- 0000052D: AtrErr: DSID-03190F80, #1: 0: 0000052D: DSID-03190F80, problem 1005 
(CONSTRAINT_ATT_TYPE), data 0, Att 9005a (unicodePwd) ]) }

Original issue reported on code.google.com by its.prov...@bryanuniversity.edu on 4 Mar 2014 at 6:35

GoogleCodeExporter commented 9 years ago
Something in your AD password policy is blocking the password change.  Please 
ask for help on the pwm-general mailing list.

Original comment by jrivard on 23 Mar 2014 at 9:28

GoogleCodeExporter commented 9 years ago
I'm having the same problem 2K8R2; Did you ever figure this out?

Thanks in advance for your help!

Original comment by jeschult...@gmail.com on 9 Apr 2014 at 7:43