The issue of the FileVault password not updating after an Active Directory mobile account password is changed on a Mojave Mac is becoming more and more prevalent where I work. Even when the machine is running 10.14.4 or newer, the fix of removing the SecureToken and re-adding it for the user does not seem to always work. The removing of the SecureToken is a script we added to Self Service to assist our technicians but I am curious as to how everyone is handling the situation currently as that tool has to be used every time a password is changed.
Is anyone still binding to AD and have a viable solution/workaround to this issue that does not significantly impact your call centers with every password change?
If you've moved away from binding because of this issue or others, what solution are you using (Jamf Connect, Apple Enterprise Connect, etc.) if any, to manage accounts and passwords?

