Forum Discussion

Marvin Oco's avatar
Marvin Oco
Iron Contributor
Mar 13, 2021
Solved

Force users to change their AD password

Is there a way that we can force users to their change AD password?    
  • cengizyilmaz's avatar
    Mar 13, 2021

    Marvin Oco 

    Can you explain your problem a little more? Do they change it to Local, or do they become m login with SSLVPN?


    If you want to apply to a single user

    Set-ADUser -Identity -ChangePasswordAtLogon $true

     

    To apply for the OU you specify

    Import-Module ActiveDirectory
    Get-ADUser -Filter * -SearchBase “OU=TestOU,DC=TestDomain,DC=Local” | Set-ADUser -ChangePasswordAtLogon:$True

     

    If you want to make a batch, you can prepare a file such as the attached csv file and use the ps code below

     

    Import-Module ActiveDirectory
    Import-Csv “C:\Scripts\ADUsers.csv” | ForEach-Object {$samAccountName =$_.”samAccountName” Get-ADUser -Identity $samAccountName | Set-ADUser -ChangePasswordAtLogon:$True}

     

Resources