Our manual has been updated.. It was a little misleading before.. Now it states:
When a directory is added to VMware Identity Manager as a Global Catalog, the Allow Change Password option is not available. Directories can be added as Active Directory over LDAP or Integrated Windows Authentication, using ports 389 or 636. |
So password change works as long as you are not using the Global Catalog ports to connect to your Domain Controller..