Active Directory password attribute: Bad-Password-Time
This attribute shows the date and time at which the user last enters an incorrect password to log on to their account.
Ldap-Display-Name | badPasswordTime |
Data type | Object |
System-Id-Guid | bf96792d-0de6-11d0-a285-00aa003049e2 |
Attribute-Id | 1.2.840.113556.1.4.49 |
CN | Bad-Password-Time |
Applies to | Windows Server 2000 and higher |
For more information on the attribute | Learn more |
ManageEngine ADSelfService Plus is an integrated self-service password management and a single sign-on (SSO) solution. ADSelfService Plus empowers users to reset their forgotten Active Directory and cloud passwords from their login screen, web-browser, or their mobile phone. Before users are allowed to reset passwords, they are required to verify their identity through any or all of the enforced authentication techniques ranging from security questions to hardware tokens and biometrics. ADSelfService Plus also allows users to change their expiring Active Directory passwords from a secure web-portal.
Other highlights of ADSelfService Plus:
- Password policy enforcer: Ensure users use strong passwords by setting custom password policies for users' Active Directory and cloud accounts.
- Endpoint multi-factor authentication: Secure Windows, macOS, and Linux logons with a secondary authentication layer like biometrics or YubiKey.
- Password expiry notifier: Send multiple password expiration alerts via SMS, email, and push notifications to remote, VPN, and OWA users.
Simplify password management with ADSelfService Plus.
Self-service password management and single sign-on solution
ManageEngine ADSelfService Plus is an integrated self-service password management and single sign-on solution for Active Directory and cloud apps. Ensure endpoint security with stringent authentication controls including biometrics and advanced password policy controls.
- Related Products