Unable to change expiring password
Posted: Mon Oct 22, 2018 3:52 pm
Hi,
we have a setup made of domain joined Windows 2012 R2 server using Flexicloud application servers behind your Reverse Gateway.
All servers are updated to latest windows update, the application server use Flexicloud v 11.60.10.19, Reverse Gateway use Flexicloud v 10.4.8.5.
Client computers have latest Windows Update and the Flexicloud client v 11.50.0.62, are connecting from Wan, not domain joined.
Users are consuming seamless applications via RemoteApp client.
A domain policy force users to change their password periodically, but they are able to change change the expired password only through the HTML5 client and only if the "Allow connection only from computers running Remote Desktop with Network Level Authentication" checkbox is disabled in SystemPropertiesRemote.exe.
There is no way to change the expired password when using the RemoteApp connection because they get a message box saying "You must change your password before logging on the first time. Please update your password or contact your system administrator or technical support."
If I enable the NLA on SystemPropertiesRemote.exe and login with the HTML5 client, after entering the expired password they get a yellow warning stating:
Network Level Authentication
RDP: 127.0.0.1:3389
CredSSP required by server!
and login is interrupted. Logging with the RemoteApp client says the usual message "You must change your password before logging on ..."
There is a way to permit users to change their password when expired through the RemoteApp client and moreover with the NLA enabled on on SystemPropertiesRemote.exe ?
Cheers.
we have a setup made of domain joined Windows 2012 R2 server using Flexicloud application servers behind your Reverse Gateway.
All servers are updated to latest windows update, the application server use Flexicloud v 11.60.10.19, Reverse Gateway use Flexicloud v 10.4.8.5.
Client computers have latest Windows Update and the Flexicloud client v 11.50.0.62, are connecting from Wan, not domain joined.
Users are consuming seamless applications via RemoteApp client.
A domain policy force users to change their password periodically, but they are able to change change the expired password only through the HTML5 client and only if the "Allow connection only from computers running Remote Desktop with Network Level Authentication" checkbox is disabled in SystemPropertiesRemote.exe.
There is no way to change the expired password when using the RemoteApp connection because they get a message box saying "You must change your password before logging on the first time. Please update your password or contact your system administrator or technical support."
If I enable the NLA on SystemPropertiesRemote.exe and login with the HTML5 client, after entering the expired password they get a yellow warning stating:
Network Level Authentication
RDP: 127.0.0.1:3389
CredSSP required by server!
and login is interrupted. Logging with the RemoteApp client says the usual message "You must change your password before logging on ..."
There is a way to permit users to change their password when expired through the RemoteApp client and moreover with the NLA enabled on on SystemPropertiesRemote.exe ?
Cheers.