Forum Discussion
Marvin Oco
Mar 13, 2021Steel Contributor
Force users to change their AD password
Is there a way that we can force users to their change AD password?
cengizyilmaz
Mar 13, 2021Brass Contributor
Can you explain your problem a little more? Do they change it to Local, or do they become m login with SSLVPN?
If you want to apply to a single user
Set-ADUser -Identity -ChangePasswordAtLogon $true
To apply for the OU you specify
Import-Module ActiveDirectory
Get-ADUser -Filter * -SearchBase “OU=TestOU,DC=TestDomain,DC=Local” | Set-ADUser -ChangePasswordAtLogon:$True
If you want to make a batch, you can prepare a file such as the attached csv file and use the ps code below
Import-Module ActiveDirectory
Import-Csv “C:\Scripts\ADUsers.csv” | ForEach-Object {$samAccountName =$_.”samAccountName” Get-ADUser -Identity $samAccountName | Set-ADUser -ChangePasswordAtLogon:$True}