The user password is expired from AD but the user can still login on a windows client and use the password with no issue ?

Anonymous
2024-08-04T12:45:05+00:00

(Active Directory users sync to Azure Active Directory )

I'm facing an issue with some active directory users accounts that the user password is expired but the user can still login on a windows client and user the password with no issue ?

Please i need to solve this issue ASAP

Windows Server Identity and access Active Directory

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question. To protect privacy, user profiles for migrated questions are anonymized.

0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Anonymous
    2024-08-05T07:01:26+00:00

    Hi Sanaa Al-Tamimi,

    Thank you for posting in the Microsoft Community Forums.

    Check the password policy:

    Log on to an Active Directory management tool (such as Active Directory Users and Computers).

    Check the user's password policy settings to ensure that they meet the organization's policy requirements.

    If necessary, you can modify the password policy to shorten the password expiration time or force users to change their passwords.

    Clear cached credentials:

    On Windows clients, users can attempt to clear cached credentials. This can be done through the Credential Manager in the Control Panel.

    Alternatively, try restarting the computer to clear any possible cached credentials.

    Update credentials for applications and services:

    Check and update all applications and services that use AD credentials.

    Ensure that these applications and services use the latest AD credentials for authentication.

    Check synchronization of local accounts with AD accounts:

    Ensure that no local accounts are in conflict with AD accounts.

    If there is a conflict, consider renaming the local account or disabling it to avoid confusion.

    Event logging and auditing:

    Check the Windows event log for details about logon attempts and authentication failures.

    Configure Active Directory auditing to track events such as password changes and login attempts.

    Best regards

    Neuvi Jiang

    0 comments No comments