Skip to main content
Question

Password Reset tool for Self Service

  • June 29, 2016
  • 8 replies
  • 41 views

Forum|alt.badge.img+6

Hi has any one got any simple way of getting user ad password and mac password to sync after reset

8 replies

mm2270
Forum|alt.badge.img+24
  • Legendary Contributor
  • June 29, 2016

Can you elaborate a bit more on the issue you're trying to solve? Do you mean if the user's AD password is changed within AD and then later getting the Mac to sync the password change? If not that, can you explain what the problem is?


Forum|alt.badge.img+6

Hi @mm2270 Basically we users who have to come to us to reset there password , due to fact there password does not sync with AD on there machine , i was wondering if anyone has found a solution around passwords not sycing with AD


Forum|alt.badge.img+18
  • Honored Contributor
  • June 29, 2016

We have, and its called Apple Enterprise Connect :)


mm2270
Forum|alt.badge.img+24
  • Legendary Contributor
  • June 29, 2016

As @dgreening indicated, there are some solutions out there. Some are paid for and officially supported products, like Enterprise Connect (from Apple). Others are custom solutions, like ADPassMon There are also some simple custom scripts to help alert users about password issues.

I would encourage you to look into some of these. Password sync problems with AD accounts are actually a very common issue, so lots of folks have taken aim at this to come up with solutions already.


Forum|alt.badge.img+7
  • Contributor
  • June 29, 2016

I've had the best luck just communicating the proper way to change AD/Mac passwords to the user.

For starters, only change passwords via system preferences. This should be done while on the company network or for remote users while connected to VPN. This should resolve most issues with keychains not syncing.

When it comes to resetting, are you doing this directly from Active Directory? Or do you have a password reset site for your users.

Other examples:

https://www.itg.ias.edu/content/how-change-network-account-password-mac-osx

http://connect.spps.org/changing_your_password_on_a_mac

https://it.ucsf.edu/how_do/change-account-password-mac-os-x

https://its.uncg.edu/Accounts/Passwords/Mac/

I took the key points and created instructions for our users. The amount of HD tickets and calls dropped after forcing users to use a specific method.

Hope this helps.


iJake
Forum|alt.badge.img+23
  • Contributor
  • June 29, 2016

Add my vote for Enterprise Connect from Apple PS.


mark_mahabir
Forum|alt.badge.img+15
  • Jamf Heroes
  • January 11, 2018

NoMAD is another potential solution that we are currently investigating.


ThijsX
Forum|alt.badge.img+20
  • Employee
  • January 11, 2018

NoMAD works great in our organisation with the AD bind active.