Hi.
Has anyone tried changing the password for a local administrator user remotely and not by going through passwd on a FIlevault 2 Lion system?
We need to change the password securely on about 200 hosts without having to type it in each system. Our systems are bound to AD, but we don't have access to create accounts so we cannot manage it that way either. I also don't think it is a good idea to not have a local administrator account.
The hashes I see are stored in
/var/db/dslocal/nodes/Default/users/user.plist
But swapping out the hash for a different hash does not change the password in the Filevault and only the old password will work to decrypt the drive. But the hash does work everywhere else.
Does anyone know how to change it in the recovery partition or some other way to mange local administrator accounts?
Thanks for any help,
Justin
