When a User forgets his password, then we can reset this via the Azure AD / O365 'forgot password' feature. This works just fine for us. But once the password is reset, the user would need to log in with the old password into the local account, but they can't because that password is set to the same previous 'forgotten' one.
How can I create a workflow that doesn't include Admin privileges so that User's can reset their own password and log in with a new one?
we decided to integrate with azure and intune using company portal. so when a user forgets their password, we can change it via AD that replicates out to azure. we login to the effected mac with our administrator login and update the password from there. then the user signs in and syncs. took us a year.......