Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Server > Active Directory > password change PDC

Reply
Thread Tools Display Modes

password change PDC

 
 
sawyer
Guest
Posts: n/a

 
      11-16-2009

Hello a

I am running in a windows 2003 FFL and DFL. I currently have two domains in
the forest. All user accounts live in the parent domain (parentdomain.com) I
also have 3 separate AD sites, all sites have at least on DC/GC. If the PDC
is located in AD siteA and a user who is located in AD siteB changes there
password, then what DC\GC is the one who actually updates or allows the
password to be changed?

This is how I think it works.

The user in AD siteB changes there password, the password change
notification gets sent to the DC\GC in AD siteB, the DC\GC in AD siteB then
send the password change update to the PDC located in AD siteA. The password
is then changed on the PDC, and the change is replicated back to the DC in
AD siteB?

is this correct?

 
Reply With Quote
 
 
 
 
Florian Frommherz [MVP]
Guest
Posts: n/a

 
      11-16-2009
Howdie!

sawyer schrieb:
> This is how I think it works.
>
> The user in AD siteB changes there password, the password change
> notification gets sent to the DC\GC in AD siteB, the DC\GC in AD siteB
> then send the password change update to the PDC located in AD siteA. The
> password is then changed on the PDC, and the change is replicated back
> to the DC in AD siteB?


Yeah, you're almost correct. I've outlined the behavior in one of my
articles:
http://www.frickelsoft.net/blog/?p=199

Cheers,
Florian
--
Microsoft MVP - Group Policy
eMail: prename [at] frickelsoft [dot] net.
blog: http://www.frickelsoft.net/blog.
ANY advice you get on the Newsgroups should be tested thoroughly in your
lab.
 
Reply With Quote
 
Florian Frommherz [MVP]
Guest
Posts: n/a

 
      11-16-2009
Howdie!

sawyer schrieb:
> The user in AD siteB changes there password, the password change
> notification gets sent to the DC\GC in AD siteB, the DC\GC in AD siteB
> then send the password change update to the PDC located in AD siteA. The
> password is then changed on the PDC, and the change is replicated back
> to the DC in AD siteB?


To answer your question directly: siteB-DC will update the password in
its local database and will notify the PDC of its domain via a special
out-of-band call about the password. It's a push, not a normal rep
notification. The push only works if those DCs can reach each other.
Otherwise the password is spread via normal rep.

Cheers,
Florian
--
Microsoft MVP - Group Policy
eMail: prename [at] frickelsoft [dot] net.
blog: http://www.frickelsoft.net/blog.
ANY advice you get on the Newsgroups should be tested thoroughly in your
lab.
 
Reply With Quote
 
sawyer
Guest
Posts: n/a

 
      11-16-2009
thank you!

"Florian Frommherz [MVP]" <> wrote in
message news:e#...
> Howdie!
>
> sawyer schrieb:
>> The user in AD siteB changes there password, the password change
>> notification gets sent to the DC\GC in AD siteB, the DC\GC in AD siteB
>> then send the password change update to the PDC located in AD siteA. The
>> password is then changed on the PDC, and the change is replicated back to
>> the DC in AD siteB?

>
> To answer your question directly: siteB-DC will update the password in its
> local database and will notify the PDC of its domain via a special
> out-of-band call about the password. It's a push, not a normal rep
> notification. The push only works if those DCs can reach each other.
> Otherwise the password is spread via normal rep.
>
> Cheers,
> Florian
> --
> Microsoft MVP - Group Policy
> eMail: prename [at] frickelsoft [dot] net.
> blog: http://www.frickelsoft.net/blog.
> ANY advice you get on the Newsgroups should be tested thoroughly in your
> lab.


 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Media Center Remote/Guide won't change Comcast Digital channels! zod Windows Media Center 27 12-01-2009 05:44 PM
Security Failures after Password Change Zachary Server Security 14 10-30-2009 07:02 PM
Cannot change AD password using Vista, XP fine. Kevin M Windows Vista Administration 3 07-26-2007 04:02 PM
Unauthorized password change VistaEnhanced Windows Vista Administration 0 05-04-2007 05:43 AM
VISTA password David Windows Vista Administration 2 07-10-2006 04:40 PM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59