Running Windows 2000 Ad environment. Have Cisco ACS 3.1 installed. Users in AD can dial into network and ACS uses the Windows 2000 AD user database.
We have recently set up a domain password policy. Some AD user accounts have "user must change password at next logon" selected. A couple of these users attempted to dial in to the network, and could not.
The only way the users could dial in and authenticate was to remove the "user must change password at next logon" selection. Is there anything that I can do to make this work so that users can dial in and change their password with the "user must change password at next logon" selected.
Thanks.
Mike