Posted on 10-04-2023 07:53 AM
Hello,
i have troubles to reset the PW of a hidden Admin account we have on our local clients. I got the message that the password could not be reset because the old password is needed. In this case i delete the user and recreated it again, this now returns the same message.
"Local admin user exists. Resetting password... An error was encountered while attempting to change the password. /usr/bin/dscl exited Permission denied. Please enter user's old password:<dscl_cmd> DS Error: -14090 (eDSAuthFailed) passwd: DS error: eDSAuthFailed."
Is it possible to do a "hard" delete of the user without knowing the password?
Posted on 10-04-2023 08:45 AM
@bobach You cannot delete an account if it is the last one with a Secure Token (see https://support.apple.com/guide/deployment/use-secure-and-bootstrap-tokens-dep24dbdcf9e/web for an explanation of what that is if you're not familiar with the term)
Posted on 10-04-2023 12:04 PM
You can boot the mac to recovery mode and reset the password there.