Answered by:
Windows Server 2012 R2 RDS users can not change expired passwords

Question
-
Windows Server 2012 R2 RDS users can not change expired passwords.
I have a FARM with 3 RDSH and 1 Broker.Tuesday, March 7, 2017 2:21 PM
Answers
-
Hi,
If a user's password expires then they must first change it using some other method before they can connect using Remote Desktop. For example, they could change it via Outlook Web Access or RD Web Access or using domain-joined workstation.
Please note that the RDWeb password change capability must be enabled using instructions in linked article above before an end user can use it.
Thanks.
-TP
- Proposed as answer by Amy Wang_ Wednesday, March 8, 2017 2:45 AM
- Marked as answer by Everton Tanamati Wednesday, March 15, 2017 11:14 AM
Tuesday, March 7, 2017 3:47 PM -
Users use Thin Client Wyse with ThinOS.
Hi,
One thing you could try is to uncheck Allow connections only from computers running Remote Desktop with Network Level Authentication in the Properties of the collection -- Security tab and uncheck similar setting in System Properties -- Remote tab on the broker. After making the change test again from a thin client to see if it allows password change for expired passwords.
Please note, unfortunately, it is normal for users to be unable to change expired passwords via Remote Desktop, as I described in my first reply. If the other methods I described for changing passwords will not work for you then I would suggest implementing a custom reminder system to prompt users to change their password before it expires. For example, you could write script to send out reminder emails and/or prompt users to change their password if it is expiring within xx days.
Thanks.
-TP
- Proposed as answer by Amy Wang_ Wednesday, March 8, 2017 2:46 AM
- Marked as answer by Everton Tanamati Wednesday, March 15, 2017 11:14 AM
Tuesday, March 7, 2017 7:20 PM
All replies
-
Hi,
If a user's password expires then they must first change it using some other method before they can connect using Remote Desktop. For example, they could change it via Outlook Web Access or RD Web Access or using domain-joined workstation.
Please note that the RDWeb password change capability must be enabled using instructions in linked article above before an end user can use it.
Thanks.
-TP
- Proposed as answer by Amy Wang_ Wednesday, March 8, 2017 2:45 AM
- Marked as answer by Everton Tanamati Wednesday, March 15, 2017 11:14 AM
Tuesday, March 7, 2017 3:47 PM -
Users use Thin Client Wyse with ThinOS.Tuesday, March 7, 2017 4:05 PM
-
Users use Thin Client Wyse with ThinOS.
Hi,
One thing you could try is to uncheck Allow connections only from computers running Remote Desktop with Network Level Authentication in the Properties of the collection -- Security tab and uncheck similar setting in System Properties -- Remote tab on the broker. After making the change test again from a thin client to see if it allows password change for expired passwords.
Please note, unfortunately, it is normal for users to be unable to change expired passwords via Remote Desktop, as I described in my first reply. If the other methods I described for changing passwords will not work for you then I would suggest implementing a custom reminder system to prompt users to change their password before it expires. For example, you could write script to send out reminder emails and/or prompt users to change their password if it is expiring within xx days.
Thanks.
-TP
- Proposed as answer by Amy Wang_ Wednesday, March 8, 2017 2:46 AM
- Marked as answer by Everton Tanamati Wednesday, March 15, 2017 11:14 AM
Tuesday, March 7, 2017 7:20 PM -
Hi,
Please remember to mark useful reply as answer, so that it would be much more efficient for other forum community members to find useful information.
Best Regards,
Amy
Please remember to mark the replies as answers if they help.
If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.Monday, March 13, 2017 9:34 AM