Active Directory password reset Unlock users account ticked by default

Liam H 1 Reputation point
2022-03-08T15:58:01.347+00:00

Hey, I have a strange issue with on-premise Active Directory.

Whenever someone right clicks on a user in Active Directory, the "Unlock the user's account" check box is always ticked. Apparently this has been a problem for a while but due to some recently introduced software, its now causing problems.

We see the box checked, regardless of the user account, when it was created, how it was created (copy of existing or brand new) this box is checked. Its also regardless of the OU the account is in, doesnt matter if its domain.local\Users or a custom nested OU structure so whatever is causing this seems to be coming from the root level of the domain.

It happens on all Domain controllers, the domain functional level is 2016.

Does anyone have any ideas why this may be happening?181132-passwordreseterror.jpg

Windows for business | Windows Client for IT Pros | Directory services | Active Directory
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Limitless Technology 39,921 Reputation points
    2022-03-15T11:54:09.447+00:00

    Hello @Liam H

    In my experience this is UI behavior by default that whenever user's account is locked out due to incorrect password then this check box "Unlock the user's account" check box will be enabled by default.

    I have just tested in my two different AD environment and this box was enabled when I try to right click of user whose account is locked.

    https://techcommunity.microsoft.com/t5/ask-the-directory-services-team/locked-or-not-demystifying-the-ui-behavior-for-account-lockouts/ba-p/400245

    Hope this answers your question :)
    Thank you.

    --
    --If the reply is helpful, please Upvote and Accept as answer--


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.