ADSelfService Plus can update local cached credentials stored in users’ machines, so that remote users can access their machines even if they forget their passwords.
How it works
Fig 1: Image showing how Cached Credential is updated by the GINA/CP Client
When remote users forget their passwords, they can use ADSelfService Plus’s GINA/CP client to reset their password from the logon screen of their machines.
ADSelfService Plus resets the password in Active Directory, and the new password is received by the GINA/CP client.
The GINA/CP client establishes a secure connection with the Active Directory through the VPN client and initiates a request for updating the cached credentials using the user's new credentials.
Once the request is approved by Active Directory, the GINA/CP client updates the cached password with the new password in the users’ local machines.
Supported VPN clients:
Fortinet
Cisco IPSec
Cisco AnyConnect
Windows Native VPN
If your preferred VPN client is not present in the above list, please contact support@adselfserviceplus.com and let us know. We will check the feasibility and add support for the VPN.
Configuration Steps:
Navigate to Configuration --> Administrative Tools --> GINA/Mac (Ctrl+Alt+Del).
Click Updating Cached Credentials over VPN.
Select Enable VPN settings.
Select the VPN client form the drop-down list.
Enter the VPN hostname or IP address and port no in their respective fields.
Enter the location where the VPN client is installed on the users' machines.
Click Save.
|
|