I'm integrating remote user with windows active directory. My AAA client is a Router IOS with radius protocol, it "speak" with Cisco ACS 3.3. When a user has to change a password, bc it has expiry, the user can't authenticate and the ACS logs says "Windows user must change password" but it dosen't show in the user's pc.
For example in VPN3000 there is a command "Radius Expire" to permit change password, are there a similar commands to config the IOS router with radius or tacacs+?
Thanks a lot. Santi.