Domain Controller setting pwdLastSet, Values : 0 at 1AM

MOP1 41 Reputation points
2023-05-31T13:24:19.1733333+00:00

Good morning,

It seems at 1AM daily our Domain Controller sets NT AUTHORITY\SYSTEM' Modified Properties : pwdLastSet, Values : 0

Is there a way to disable this or is this just flagged off last set date and it makes users reset on next login automatically?

Thanks

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,898 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Limitless Technology 43,951 Reputation points
    2023-06-02T12:40:58.0866667+00:00

    Hello there,

    This flag on an account may be an indication of a stale account or an account created without a password.

    User accounts can be flagged with pwdlastset=0 under three conditions:

    Where an account has been created but a password has not been assigned.

    Where an account has been created and the administrator has assigned a password but selected the option to change password at next logon.

    Where the administrator has selected the option to require a user to change their password at the next logon as part of managing that user’s account, such as after a password reset.

    Review accounts where the attribute "pwdlastset" has a zero value https://learn.microsoft.com/en-us/services-hub/health/remediation-steps-ad/review-accounts-whose-attribute-pwdlastset-has-a-zero-value

    Hope this resolves your Query !!

    --If the reply is helpful, please Upvote and Accept it as an answer–

    0 comments No comments