[midPoint] Changing user password in Azure AD with Microsoft Graph API connector

Marc Fueller marc.fueller at daasi.de
Mon Jan 3 13:01:04 CET 2022


Hi Jussi,


this behavior could be caused by a policy on Azure AD that is setting 
the flag for "must change password at next logon" in UserAccountControl 
whenever the password is changed.


Best regards,

Marc



Am 03.01.22 um 12:37 schrieb Jussi Jokela via midPoint:
> Hi everyone,
>
> Anyone having some ideas for this? Currently a blocker for me.
>
>
> Best regards,
> Jussi Jokela
> ------------------------------------------------------------------------
> *From:* midPoint <midpoint-bounces at lists.evolveum.com> on behalf of 
> Jussi Jokela via midPoint <midpoint at lists.evolveum.com>
> *Sent:* Friday, December 31, 2021 11:32
> *To:* midpoint at lists.evolveum.com <midpoint at lists.evolveum.com>
> *Cc:* Jussi Jokela <jussi.jokela at fiarone.com>
> *Subject:* [midPoint] Changing user password in Azure AD with 
> Microsoft Graph API connector
> Hi everyone,
>
> I'm having some difficulties with Azure AD and MS Graph API connector 
> (1.0.0.1-SNAPSHOT).
>
> When I'm changing users password in midpoint, Azure still wants that 
> user to change password in next login to Azure (password expired or 
> first login error). I'm also mapping the 
> passwordProfile.forceChangePasswordNextSignIn = false, but looks like 
> this has no effect? Anyone else having same problems?
>
> Weird thing is, when I'm creating a new user in midpoint and this user 
> is also provisioned to Azure AD, this user can sign in without forced 
> password change.
>
>
> Best regards,
> Jussi Jokela
>
> _______________________________________________
> midPoint mailing list
> midPoint at lists.evolveum.com
> https://lists.evolveum.com/mailman/listinfo/midpoint

-- 
Marc Füller
Consultant

DAASI International GmbH
Europaplatz 3
D-72072 Tübingen
Germany

phone: +49 7071 407109-0
fax:   +49 7071 407109-9
email:marc.fueller at daasi.de
web:www.daasi.de
Sitz der Gesellschaft: Tübingen
Registergericht: Amtsgericht Stuttgart, HRB 382175
Geschäftsleitung: Peter Gietz
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.evolveum.com/pipermail/midpoint/attachments/20220103/b27828c1/attachment.htm>


More information about the midPoint mailing list