LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 09-25-2018, 08:35 AM   #1
skumar217
LQ Newbie
 
Registered: Jun 2015
Posts: 2

Rep: Reputation: Disabled
How to force open LDAP user to change their password at first login


Hi,

I have configured OpenLDAP on my one of Linux servers and set password policy for users. Everything is working fine but now I am unable to fix two requirements :

1> How we can force LDAP user to change their password at first login.

2> How to set alert on LDAP, so that User will be prompted before LPDA password expiry while login on their systems.

Please help.

Thanks,
Niraj
 
Old 09-25-2018, 08:58 AM   #2
TB0ne
LQ Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 26,700

Rep: Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972
Quote:
Originally Posted by skumar217 View Post
Hi,
I have configured OpenLDAP on my one of Linux servers and set password policy for users. Everything is working fine but now I am unable to fix two requirements :

1> How we can force LDAP user to change their password at first login.
2> How to set alert on LDAP, so that User will be prompted before LPDA password expiry while login on their systems.
See the "Question Guidelines" link in my posting signature. We are happy to help, but you need to do basic research first (and provide full details) when asking a question. You don't say what version/distro of Linux, or what kind of clients are logging in.

Both of your questions have many, MANY hits in Google, with examples and suggestions, such as "force ldap users to change password after first login", and "password expiration alert". Without knowing what you have done/tried so far, we can't suggest what may be wrong or how to fix it. What HAVE you done/tried?

Hints:
  1. Setting ShadowLastChange may work
  2. The pwdLastSet entity in LDAP can be read upon login; simple math done in a login script can tell you how many days and do whatever you'd like
 
Old 09-25-2018, 10:53 AM   #3
skumar217
LQ Newbie
 
Registered: Jun 2015
Posts: 2

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by TB0ne View Post
See the "Question Guidelines" link in my posting signature. We are happy to help, but you need to do basic research first (and provide full details) when asking a question. You don't say what version/distro of Linux, or what kind of clients are logging in.

Both of your questions have many, MANY hits in Google, with examples and suggestions, such as "force ldap users to change password after first login", and "password expiration alert". Without knowing what you have done/tried so far, we can't suggest what may be wrong or how to fix it. What HAVE you done/tried?

Hints:
  1. Setting ShadowLastChange may work
  2. The pwdLastSet entity in LDAP can be read upon login; simple math done in a login script can tell you how many days and do whatever you'd like
Hi,

Before posting my issue on this forum, we tried all entities mentioned in your reply but none of these are working. We did a lot of google butdid not get any fruitful solution. Hence I thought to put my problem here, if any of member solve this issue.

Thanks,
Niraj
 
Old 09-25-2018, 12:06 PM   #4
rtmistler
Moderator
 
Registered: Mar 2011
Location: USA
Distribution: MINT Debian, Angstrom, SUSE, Ubuntu, Debian
Posts: 9,883
Blog Entries: 13

Rep: Reputation: 4931Reputation: 4931Reputation: 4931Reputation: 4931Reputation: 4931Reputation: 4931Reputation: 4931Reputation: 4931Reputation: 4931Reputation: 4931Reputation: 4931
Quote:
Originally Posted by skumar217 View Post
Hi,

Before posting my issue on this forum, we tried all entities mentioned in your reply but none of these are working. We did a lot of google butdid not get any fruitful solution. Hence I thought to put my problem here, if any of member solve this issue.

Thanks,
Niraj
I find multiple solutions for exactly your original questions when I use google.
 
Old 09-25-2018, 02:03 PM   #5
TB0ne
LQ Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 26,700

Rep: Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972
Quote:
Originally Posted by skumar217 View Post
Hi,
Before posting my issue on this forum, we tried all entities mentioned in your reply but none of these are working. We did a lot of google butdid not get any fruitful solution. Hence I thought to put my problem here, if any of member solve this issue.
Sorry, I doubt you tried 'all entities' you found with a Google search. Putting the phrases given to you before pulls up LOTS, with commands and examples, that do exactly what you asked.

Again: WHAT did you do/try??? And you STILL don't provide details about your system, clients, or what the results of the commands you supposedly tried were.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: How to force password change at the next login on Linux LXer Syndicated Linux News 0 10-05-2015 02:21 PM
[SOLVED] REDHAT missing functionality - force user to change password on login machielr Linux - Security 5 03-17-2011 02:36 PM
How to force a user to change their NIS password at logon? synthol6 AIX 1 08-17-2010 08:47 PM
Create user add file with default password and force user to change it? Morgandy Linux - Newbie 3 02-02-2010 05:06 PM
RH 5.2 - First login: Force root password change le_forban Linux - Enterprise 2 01-20-2009 07:24 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 09:16 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration