Groups > Novell > Identiry Manager Workflow applications > Re: Using UserApp for Password Expiration




Using UserApp for Password Expiration

Using UserApp for Password Expiration
Mon, 12 May 2008 17:36:02 GMT
Hello,
I was setting up the UserApp to act simply as a Password Self-Service
mechanism behind Access Manager.  The Cool Solutions article I am
following ( 'Cool Solutions: Configuring Access Manager for UserApp and
SAML' (http://www.novell.com/coolsolutions/appnote/19981.html) ) covers
how to do it.  But the one thing I don't like is that it uses the
UserApp's Forgotten Password Interface even for an expired password.  I
don't want users to have to answer their challenge questions for a
password expiration.  Is there any URL I can point users at on the
UserApp to just handle a password expiration scenario?  I don't want
users ending up inside the UserApp either.

Thanks.

Matt


-- 
matt
------------------------------------------------------------------------
matt's Profile: http://forums.novell.com/member.php?userid=1582
View this thread: http://forums.novell.com/showthread.php?t=327563
Post Reply
Re: Using UserApp for Password Expiration
Fri, 16 May 2008 20:18:26 GMT
Matt,

It appears that in the past few days you have not received a response to your 
posting.  That concerns us, and has triggered this automated reply.

Has your problem been resolved? If not, you might try one of the following
options:
 
- Visit http://support.novell.com and search the knowledgebase and/or check all
the other self support options and support programs available.
- You could also try posting your message again. Make sure it is posted in the 
correct newsgroup. (http://forums.novell.com)

Be sure to read the forum FAQ about what to expect in the way of responses:  
http://support.novell.com/forums/faq_general.html

If this is a reply to a duplicate posting, please ignore and accept our
apologies 
and rest assured we will issue a stern reprimand to our posting bot.

Good luck!

Your Novell Product Support Forums Team
http://support.novell.com/forums/
Post Reply
Re: Using UserApp for Password Expiration
Thu, 12 Jun 2008 11:46:02 GMT
Try changing the URL to:
http://10.142.191.234/IDM/jsps/pwdmgt/PasswordChange.jsf
Any idea how you get the SAML NMAS method working I don't seem to have
those options as described in cool solution.


-- 
soan
------------------------------------------------------------------------
soan's Profile: http://forums.novell.com/member.php?userid=13391
View this thread: http://forums.novell.com/showthread.php?t=327563
Post Reply
Re: Using UserApp for Password Expiration
Thu, 12 Jun 2008 23:56:01 GMT
Hey Guys,

I just went through this the other day.

It seems that SSO (SAML or Header Based) will not work when directly
calling the PasswordChange.jsf page. From what I can tell this page is
there to allow you to change your password after a successul Challenge
/ Reponse.

What you can do however is to point the browser either directly at the
change password page inside the user app or point the user at only the
change password portlet.

Somthing like this:-

https://<you-domain>/IDMProv/portal/portlet/PasswordChangeJsf?novl-inst=ID
MProv.PasswordChangeJsf

The only problem then is to enabble the user to navigate (i.e. Log them
out) away from this page once the password has been changed.

Hope that helps.

Cheers,

Rowan


-- 
Misterwippy
------------------------------------------------------------------------
Misterwippy's Profile: http://forums.novell.com/member.php?userid=170
View this thread: http://forums.novell.com/showthread.php?t=327563
Post Reply
Re: Using UserApp for Password Expiration
Fri, 13 Jun 2008 00:06:02 GMT
Misterwippy;1578082 Wrote: 
> Hey Guys,
> 
> I just went through this the other day.
> 
> It seems that SSO (SAML or Header Based) will not work when directly
> calling the PasswordChange.jsf page. From what I can tell this page is
> there to allow you to change your password after a successul Challenge
> / Reponse.
> 
> What you can do however is to point the browser either directly at the
> change password page inside the user app or point the user at only the
> change password portlet.
> 
> Somthing like this:-
> 
>
https://<you-domain>/IDMProv/portal/portlet/PasswordChangeJsf?novl-inst=ID
MProv.PasswordChangeJsf
> 
> The only problem then is to enabble the user to navigate (i.e. Log them
> out) away from this page once the password has been changed.
> 
> Hope that helps.
> 
> Cheers,
> 
> Rowan


I have to ask the question: "Why don't you want them being forced to
answer c/r?"

Shouldn't it be considered a security necessity?

Just my 2c worth...


-- 
EOS Sufferer :rolleyes: > Thank you. Come again. - Apu Nahasapeemapetilon
------------------------------------------------------------------------
ScorpionSting's Profile: http://forums.novell.com/member.php?userid=1663
View this thread: http://forums.novell.com/showthread.php?t=327563
Post Reply
<< Previous 1 2 Next >>
( Page 1 of 2 )
about | contact