<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Allow change password option and Global Catalog domain controllers in Workspace ONE Discussions</title>
    <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454844#M476</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Sven,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Did you figure out how to make this feagure works?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm facing the same issues like you. The feature is not working and I guess it's because even if you configure the certificate, the java application is using ldap instead of ldaps. This is like in vRO when you want to use the AD plugin and run the "Add user with password" workflow. Have the certs configured and use 636 is a requirement.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Jose Gomez&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 16 Dec 2016 16:50:28 GMT</pubDate>
    <dc:creator>FerrerDeCouto</dc:creator>
    <dc:date>2016-12-16T16:50:28Z</dc:date>
    <item>
      <title>Allow change password option and Global Catalog domain controllers</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454842#M474</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Question about changing expired passwords with Identity Manager. The documentation says: “The Allow Change Password option is not available for Active Directory environments that use a global catalog.”&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;Why is this? And if I have an environment with 2 DCs which are both GC, I cannot use this functionality? Can't you have gobal catalog servers at all in your environment? I think all of my customer environments uses Global catalog servers in their infrastructure...&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Sep 2016 19:53:53 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454842#M474</guid>
      <dc:creator>VirtualSven</dc:creator>
      <dc:date>2016-09-13T19:53:53Z</dc:date>
    </item>
    <item>
      <title>Re: Allow change password option and Global Catalog domain controllers</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454843#M475</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It is not listed in the documentation as a requirement, but does vIDM need a secure LDAP connection with the domain if you want to allow password change through vIDM? If I read this, it should:&lt;/P&gt;&lt;P&gt;&lt;A href="https://technet.microsoft.com/en-us/library/cc514301.aspx" style="font-size: 10pt;" title="https://technet.microsoft.com/en-us/library/cc514301.aspx"&gt;https://technet.microsoft.com/en-us/library/cc514301.aspx&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 Sep 2016 07:29:34 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454843#M475</guid>
      <dc:creator>VirtualSven</dc:creator>
      <dc:date>2016-09-15T07:29:34Z</dc:date>
    </item>
    <item>
      <title>Re: Allow change password option and Global Catalog domain controllers</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454844#M476</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Sven,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Did you figure out how to make this feagure works?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm facing the same issues like you. The feature is not working and I guess it's because even if you configure the certificate, the java application is using ldap instead of ldaps. This is like in vRO when you want to use the AD plugin and run the "Add user with password" workflow. Have the certs configured and use 636 is a requirement.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Jose Gomez&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Dec 2016 16:50:28 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454844#M476</guid>
      <dc:creator>FerrerDeCouto</dc:creator>
      <dc:date>2016-12-16T16:50:28Z</dc:date>
    </item>
    <item>
      <title>Re: Allow change password option and Global Catalog domain controllers</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454845#M477</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It's working with Global catalog servers in the domain and without ssl connection to the domain. However, at the customer it is currently still not working, VMware support is trying to figure it out.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Dec 2016 13:28:10 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454845#M477</guid>
      <dc:creator>VirtualSven</dc:creator>
      <dc:date>2016-12-21T13:28:10Z</dc:date>
    </item>
    <item>
      <title>Re: Allow change password option and Global Catalog domain controllers</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454846#M478</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Our manual has been updated.. It was a little misleading before.. Now it states: &lt;/P&gt;&lt;TABLE border="0" cellpadding="0" cellspacing="0" class="list" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: 12px;" summary=""&gt;&lt;TBODY&gt;&lt;TR style="border: none;"&gt;&lt;TD class="bullettext" colspan="1" rowspan="1" style="padding: 0 0.6em 0 0; border-bottom: none; border-top: none;" width="100%"&gt;&lt;P class="Para" style="margin-top: 0 !important; margin-bottom: 0 !important; padding-top: 0.4em !important; padding-bottom: 0.35em !important;"&gt;When a directory is added to &lt;SPAN&gt;&lt;A name="GUID-130384CB-9B32-4024-9F83-415CAA721EBF__productname_155880CB35164572B55E621BC17B790D" shape="rect"&gt;&lt;/A&gt;VMware Identity Manager&lt;/SPAN&gt; as a Global Catalog, the &lt;SPAN class="uicontrol" style="font-weight: bold;"&gt;&lt;A name="GUID-130384CB-9B32-4024-9F83-415CAA721EBF__uicontrol_1B8B7FDBB58245EB8C7B4E5F4DDFDEF7" shape="rect"&gt;&lt;/A&gt;Allow &lt;SPAN style="color: #000000; background: #ffff33;"&gt;&lt;SPAN style="background-position: initial;"&gt;Chang&lt;/SPAN&gt;e&lt;/SPAN&gt; &lt;SPAN style="color: #000000; background: #ffff33;"&gt;Password&lt;/SPAN&gt;&lt;/SPAN&gt; option is not available. Directories can be added as Active Directory over LDAP or Integrated Windows Authentication, using ports 389 or 636.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So password change works as long as you are not using the Global Catalog ports to connect to your Domain Controller..&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Dec 2016 06:39:40 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454846#M478</guid>
      <dc:creator>pbjork</dc:creator>
      <dc:date>2016-12-29T06:39:40Z</dc:date>
    </item>
    <item>
      <title>Re: Allow change password option and Global Catalog domain controllers</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454847#M479</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;‌I am using Integrated Windows Authentication ans LDAPS over port 636 but it doesn't work. By the way, this is happening with the vIDM embedded in vRA and the configuration is made through vRA. I don't recall to see any Global Catalog option when it's vRA. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Dec 2016 07:18:10 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454847#M479</guid>
      <dc:creator>FerrerDeCouto</dc:creator>
      <dc:date>2016-12-29T07:18:10Z</dc:date>
    </item>
    <item>
      <title>Re: Allow change password option and Global Catalog domain controllers</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454848#M480</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think vRA is using an older version of the Identity Manager bits so I do not thing Password Change is supported. AD Password Change was just recently added to VMware Identity Manager.. But I'm not 100% sure since I do not really cover vRA..&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Dec 2016 07:20:43 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Allow-change-password-option-and-Global-Catalog-domain/m-p/454848#M480</guid>
      <dc:creator>pbjork</dc:creator>
      <dc:date>2016-12-29T07:20:43Z</dc:date>
    </item>
  </channel>
</rss>

