Have cascade of servers getting password change include a feature to unlock the account when all the servers are changed
0 vote
One of the issues we see with password changes on multiple servers, we change the password in the AD account and before all the servers can be changed, the unchanged servers make enough attempts to lock the account for invalid password attempts. Having a feature at the end of the list of servers to unlock the account and verify that it is unlocked would help remove one more manual step from the process.
Hello,
Could you elaborate a bit more on your request please because I'm not sure to understand your request. Are you talking about password changes from a password rotation made in the PAM ? Why a servers make enough attempts to lock tha account for invalid password ? Who is trying those attempts ?
Best regards,
François Dubois