PassSync : Windows Active Directory remember my last 2 passwords

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



hello,

I discovered a strange behavior with Active Directory LDAP protocol !

My config :
- an Active Directory on MS Windows Server 2003 SP2 + PassSync service
- a Fedora Directory Server 1.1.3 + Replication Agreement for Windows 
synchronization

Bidirectional synchronization of accounts is running, it is OKAY.

When an administrator reset an user password with Administration Server 
Console,
this user can connects him to Windows LDAP with the new password choosed 
by administrator (the sync of password is OK),
But this user can also uses the previous password (big surprise) !
=> both are accepted by Windows LDAP : the last and the previous 
password !!!

How that can be possible ???!
And how to stop this strange behavior ?


User connexions are made with ldapsearch command :
/usr/lib/mozldap/ldapsearch -h adfds -P /etc/dirsrv/slapd-fds3/ -m 
/etc/dirsrv/slapd-fds3/ -D "cn=Gontran 
Bonheur,cn=Users,dc=example,dc=fr" -b "cn=Users,dc=example,dc=fr" -w - 
"(cn=Gontran Bonheur)" dn
This request accepts the new and the previous passwords !!!!!!

If I force "Send and Receive Updates Now" in the Console, the behavior 
does not change.

If my user uses Windows login banner, this behavior doesn't appear.


Regards.
-- 
* Hugo ?ti?vant
***




[Index of Archives]     [Fedora User Discussion]     [Older Fedora Users]     [Fedora Announce]     [Fedora Package Announce]     [EPEL Announce]     [Fedora News]     [Fedora Cloud]     [Fedora Advisory Board]     [Fedora Education]     [Fedora Security]     [Fedora Scitech]     [Fedora Robotics]     [Fedora Maintainers]     [Fedora Infrastructure]     [Fedora Websites]     [Anaconda Devel]     [Fedora Devel Java]     [Fedora Legacy]     [Fedora Desktop]     [Fedora Fonts]     [ATA RAID]     [Fedora Marketing]     [Fedora Management Tools]     [Fedora Mentors]     [Fedora Package Review]     [Fedora R Devel]     [Fedora PHP Devel]     [Kickstart]     [Fedora Music]     [Fedora Packaging]     [Centos]     [Fedora SELinux]     [Fedora Legal]     [Fedora Kernel]     [Fedora QA]     [Fedora Triage]     [Fedora OCaml]     [Coolkey]     [Virtualization Tools]     [ET Management Tools]     [Yum Users]     [Tux]     [Yosemite News]     [Yosemite Photos]     [Linux Apps]     [Maemo Users]     [Gnome Users]     [KDE Users]     [Fedora Tools]     [Fedora Art]     [Fedora Docs]     [Maemo Users]     [Asterisk PBX]     [Fedora Sparc]     [Fedora Universal Network Connector]     [Fedora ARM]

  Powered by Linux