Using Active directory, after changing the user password, still user is able to login using the old password
How To articles are not official guidelines or officially supported documentation. They are community-contributed content and may not always reflect the latest updates to Liferay DXP. We welcome your feedback to improve How To articles!
While we make every effort to ensure this Knowledge Base is accurate, it may not always reflect the most recent updates or official guidelines.We appreciate your understanding and encourage you to reach out with any feedback or concerns.
Legacy Article
You are viewing an article from our legacy "FastTrack"
publication program, made available for informational purposes. Articles
in this program were published without a requirement for independent
editing or verification and are provided"as is" without
guarantee.
Before using any information from this article, independently verify its
suitability for your situation and project.
Issue
- Using Active directory, after changing the user password, still, a user is able to login using the old password
Resolution
- Under Control Panel -> Portal Settings -> Authentication -> LDAP, if the "required" checkbox is not selected then the expected behavior would be that the user will log in against the Liferay database, which could be the old password if it has not been updated.
- That is in simple words, If a user’s password is updated in the AD and the user’s information is not updated in Liferay then the user will be able to log in with their old password.
- To ensure that the user's passwords are updated or synchronized it is necessary to have LDAP "Required" option have to be checked.
Did this article resolve your issue ?