12/26/2012 7:21:24 AM
I'm trying to set up the remote password change and I've yet to get it to work. Let me explain my current set up.
I've duplicated an existing local windows template to test out the auto change feature and assigned one secret which is a local windows account on a system. Its settings are as follows:
Enable remote password changing: enabled
Enable Heartbeat: enabled
Heartbeat Check interval: 7 days
Password type: Windows Account
Machine: windows system name
I enabled remote password changing and set password expiration on the template to every 30 days.
When we set up SecretServer a couple years back, we originally edited our default password policy so it is a length of between 8 and 20 characters and is composted of at least 1 lower, 1 upper, 1 numeric and 1 symbol. We only use this modified default password policy in all templates.
When enabling auto change on the secret, I've left the password field blank, as indicated by the user guide, it should auto-generate a password.
Auto change is configured on the secret with the default settings: enabled using reset password settings of "credentials on secret"
The Auto change schedule is set up for none, for testing.
If I expire the password and then click on the remote password changing tab for the secret, click the "change password remotely" button, click generate and finally click the "change button", when I look at the remote password change log, I always get an error on the secret that reads "Change password failed: Unknown. (NERR_PasswordPolicySettings) "
If I check the password policy default, it looks fine. If I look at the generated password, it looks fine.
My remote password changing nor auto changing works.
I've looked at the forums and the user guide and so far I've not been able to self-diagnose this issue.
Would anyone have any hints at what the problem might be or further logs I can look at to provide better detail into this?
Baldwin & Lyons, Inc. Network Services