Reset password of mobile managed user, cannot acces login keychain

I reset the lost password of a mobile managed user (very managed, this is a 6-year old). On login and starting Safari, he now gets a panel asking for the keychain password (which is the old password, which is lost). I tried removing the mobile account and recreating, but the same thing happens (login.keychain synced from server?).
Anyway, how can I fix this?

If Keychain First Aid doesn't help, try [HT1274|http://support.apple.com/kb/HT1274]?
Keychain encryption is solid; depending on the sequence which has transpired here, you may end up [resetting the keychain (TS1544)|http://support.apple.com/kb/TS1544] and starting over again.
Going forward, it might be best to lock this user's password; prevent password changes.

Similar Messages

  • How to reset password for a web user via GUI?

    Hi,
    How to reset password for a web user ID via GUI? is it possible?
    Thanks.

    Hi,
    You can  reset the pwd for the user through trascn SU01.
    BR,
    Disha.
    *Pls reward points for useful answers.*

  • Used "Reset Password", now "No available users"

    I started up an old G4 running OS X Server 10.4.1 but couldn't remember the user or password. I put in an Install Disc, ran "Reset Password" from the disc, changed the password for our "Admin" user (not the System/Room user), hit "Save", Quit and restarted the computer.
    The new password wouldn't take.
    I put in the Install Disc again, ran "Reset Password" again but now my volume indicates that there are "No available users".
    Can anyone help me out?
    A million thanks in advance.
    G4 Mac OS X (10.4.1)

    Perform the instructions in sections 1 and 2 of this article; if you don't have a backup or the issue persists, perform the instructions in sections 1 and 3 and then recreate the accounts in the same order they were initially created with new passwords. None of your documents or other files will be deleted from the computer if this is done properly.
    (16140)

  • Managed User cannot see blank CD

    Hi all,
    I have recently reinstalled the College Mac suite where I work as an IT Tech (and Mac noob).
    Over the last term the desktops on the macs were used as a dumping ground for student work and as such proved difficult to back up the work at the end of term.
    A sollution seemed to me to be to create a desktop alias to Documents and set that as the only area on the desktop that the Student (managed) user had read/write access and set the rest of the desktop to Read-only.
    Other than problems opening attachments from Hotmail (one for another day..), this has worked out quite well. Until yesterday...
    When the user inserts a blank CD the system promts to choose an app, when Finder is selected the screen refreshes but the blank CD does not appear on the screen.
    This does not happen for USB keys or CDs with data on.
    I have played aroud with setting the desktop to Read/Write and the blank disk appeared.
    At the moment it seems my only two options are to change the desktop to R/W or to create a new user with sufficient access to write a CD/DVD and Student Docs but lock down everything else. I'd rather not do either.
    I hope this makes sence as I know I tend to ramble, and would really appreciate any assistance!
    Cheers.

    Hi Fluke?, and a warm welcome to the forums!
    To start off I'm not quite certain what/why saving/dumping stuff on their Desktop would make it any harder to backup stuff, but perhaps the CD/DVD Pref Pane could be set to the Run a Script in it's settings, rather use Finder for Blanks, then a Sceipt to do what you want, or set it to opend a CD writing App instead of Finder, like Toast or Dragon Burn.
    You might also consider a Folder Action to watch the Desktop for new files...

  • Manage Users --Cannot Save, getting error "The resource could not be saved.... unknown error"

    In Project Server 2010, in Server Settings > Manage Users we can't edit any existing users - no matter if we change something or not, as soon as we hit
    the SAVE-Button, we get this error:
    The resource could not be saved due to the following reasons:
    An unknown error has occurred.
    We have two custom Security Categories and Users Group. The Resources are synced with AD Groups every midnight. There are no Resource level Custom fields.
    We were able to save it till few days, not sure what is the issue now. 
    How to find out and resolve this issue!
    Any hint would be of great help.
    Thanks.
    Greema

    Hi
    Go to IISManager --> Select "SharePoint Web Access" --> Double click on Compression -->
    2] Uncheck both "Enable Dynamic content compression" and "Enable static content compression" --> click on Apply.
    3] Do the same steps for the site where PWA is present. Then try editing the user.

  • Reset password, block or unblock user in a R/3 from the SAP GRC AC 5.3

    Hello,
    I have 2 doubts.
    I want to know if a user can reset his password of the R/3 from the SAP GRC AC 5.3 automaticly.
    And can someone block or unblock a user using  the GRC AC 5.3 automaticly too?.
    I know you can create a user automaticly from GRC, but can I do those 2 things?
    Best Regards.
    Pablo Mortera.

    Hello,
    What I don't get is, that why do I need the HR module (HR Trigger) to lock, unlock, password slñf service of a user ID. The HR module uses employees attached to a user ID if it has one.
    Why do I need the HR module to configure the automatic request access?
    Best regards.
    Pablo Mortera.

  • New user needs to reset password asking for old users password

    Attn: My new Mac friends,
    I just bought me a mac pro with the operating system
    X Already Installed and because its a used macintosh the old administrators logon name appears and of coarse its asking for the password.
    I need to know how to reset the password and put my password in it without the use of the disc to the OS x.
    Or maybe clear the password at startup by entering ?
    (what Key on the Keyboard do I press to enter the computers system bios or adminastrator?
    thanks susan ([email protected])

    Welcome to Apple discussions, Susan!
    On a Mac you have to have the system disk in order to reset the administrator password. You should ask whoever you bought the system from to give you the disks. Without these you will be unable to fix many of the problems that occasionally arise. At the VERY least, you should be able to get the password from the person you bought it from.
    Just for future reference Macs don't have anything equivalent to the BIOS. That is a PC thing.
    Also this forum is for people who want to program on the Mac a much better forum would be the "Installation & Setup" forum under "Tiger"
    http://discussions.apple.com/forum.jspa?forumID=752
    Finally, it isn't a good idea to post your e-mail address in public forums like this. Spammers can, and do, read through and add your address to their lists. Additionally the expectation is that all answers will be made to the list, so that others can get the help as well. If you want people t be able to reach you directly, you can go to "My Settings" on the right and add your address there. It is much harder for spammers to get your address that way. If you wan to know that someone has responded to your post, you can "subscribe" using the "My subscriptions" link, also on the right.
    Enjoy your Mac!

  • OBI-users cannot acces BI-Publisher-Dashboard

    Hola,
    I have configured a few users in my system and also have putted them into the defaul BIP groups.
    @ BIP Security is configured to use BI-Server (is there a document to understand the settings of this configuration?)
    When accessing the system with the administrator user, I can view problem-less access BIP-component in my Dashboard, but when accessing with any other user the BIP-Dashboard componente causes an error.
    How do i have to configure BIP-security?
    Greetings
    Guido

    HY,
    I have made an article on this subject with all step :
    http://gerardnico.com/wiki/dat/bip/configuration_bip
    You have the documentation reference at the end if you want more details.
    Success
    Nico

  • Managed user cannot connect to internet

    My daughter complained that since upgrading my iMac to Yosemite she has not been able to access the Internet or send or receive emails. All other accounts on the same computer were OK.
    I renewed the DHCP lease, rebooted, tried again, then turned everything including routers and Wi-Fi off and back on. Nothing.
    However when I changed her account settings to give her admin rights everything worked fine.
    Has anyone else noticed the same problem?

    That's exactly what happened here. See my very recent post querying about getting a later version to work. That might be of interest, as you can try the later version to see what you think without installing.
    With personal guidance from an expert, we did get the Toshiba original installation up to date and fine with the internet, but there were still "issues" with file sharing on my Windows network.

  • How can I get a list of users with reset password ability?

    We are trying to tighten our security, but thanks to the environment we are in this is a bigger task than it should be. As part of this I have been asked to get a list of users who have the ability to reset other users passwords. there are the obvious suspects,
    domain admins, service desk etc., but we also appear to have random people who can do this because of a requirement during test or development stages way back. Is there a way to get this, I looked at using powershell but there doesn't seem to be much out there
    to give me a pointer, things like ADManager+ do not work, when I try to search on permissions it sits there doing nothing then crashes.
    Is there a way to build a function using powershell that can do this or is there some third party cmdlet or app that will provide me this info?
    Any help gratefully accepted.

    Hi,
    Based on my knowledge, except for those default groups users, such as domain admins and enterprise admins and so on, have reset password ability for other users, we can use delegation control to give other common users permissions to reset password for others,
    to view or delete Active Directory Delegated Permissions, please go through the below article:
    https://social.technet.microsoft.com/wiki/contents/articles/6477.how-to-view-or-delete-active-directory-delegated-permissions.aspx
    And if you were editing single user's security tab to give specific users reset password permissions, then I think we should create a script to get all those users, for scripting, please also post in the official scripting guys forum:
    https://social.technet.microsoft.com/Forums/scriptcenter/en-US/home?forum=ITCG
    Regards,
    Yan Li
    Regards, Yan Li

  • Question about reset password in lesson08 of David Powers (Dreamweaver CS5 with PHP)

    I'm at the page 299 that found a problem in reset password. I managed to received email of link to reset password. In the reset password form, why no checking of password length entered or password unmatch with confirmed password input ? Instead it displays error message of 'Sorry, there was an error. Make sure you used the complete URL in the email you received. The URL can be used to change your password only once. If necessary...' The error message of 'Passwords don't match' or 'Use 8-15 letters or numbers only' not processed.
    Please help !
    Thank You

    I can see the 32 characters attached to URL and also I can see the 32 characters stored in database. It actually can reset the the password if entered within the requirement of 8-15. But when I entered less than 8, it does not show the error message of 'Use 8-15 letters or numbers only'.
    I noticed that $_SESSION['nomatch'] was assigned to True after the validation of 8-15 length. Below is the code for reference.
    <?php
    session_start();
    $errors = array();
    $success = FALSE;
    $_SESSION['nomatch'] = TRUE;
    require_once('library.php');
    try {
      if (isset($_GET['id']) && isset($_GET['token'])) {
              $id = $dbRead->quote($_GET['id']);
              $token = $dbRead->quote($_GET['token']);
              $sql = "SELECT user_id FROM users WHERE user_id = $id AND token = $token";
              $result = $dbRead->fetchRow($sql);
              if ($result) {
          $_SESSION['user_id'] = $_GET['id'];
                $_SESSION['token'] = $_GET['token'];
                $_SESSION['nomatch'] = FALSE;
      if (isset($_POST['reset'])) {
              // password reset code goes here
              $val = new Zend_Validate();
              $val->addValidator(new Zend_Validate_StringLength(8,15));
              $val->addValidator(new Zend_Validate_Alnum());
              if (!$val->isValid($_POST['password'])) {
                $errors['password'] = 'Use 8-15 letters or numbers only';
              $val = new Zend_Validate_Identical($_POST['password']);
              if (!$val->isValid($_POST['conf_password'])) {
                $errors['conf_password'] = "Passwords don't match";
              if (!$errors) {
                // update the password
                $data = array('password' => sha1($_POST['password']),
                              'token'    => NULL);
                $where['user_id = ?'] = $_SESSION['user_id'];
                $where['token = ?'] = $_SESSION['token'];
                $success = $dbWrite->update('users', $data, $where);
                unset($_SESSION['user_id']);
                unset($_SESSION['token']);
                unset($_SESSION['nomatch']);
    } catch (Exception $e) {
      echo $e->getMessage();

  • Can not reset password in Oracle 10g Express

    I have searched google for 4 hours, now I am certain:
    "May be I am the only one in the world who have this problem."
    I installed Oracle 10g Express on my Debian5.
    I need to reset password for SYS/SYSTEM users
    So I checked online tutorial says I need to use a utility called "orapwd" to recreate a password file.
    Everything is smooth since now.
    When I finally find this "orapwd" utility. I type "orapwd" as a root user. Terminal replies "orapwd command not found".
    I then discovered the orapwd is some kind of x-execute file. After an extensive search on google I concluded that this kind of file is inexecutable.
    Many tutorials I read online specify that the "orapwd" is actually "orapwd.exe", but on my Debian system it is "orapwd" with no extension.
    Any suggestion is welcome.
    ps: is there anyway I can reset password without going through "orapwd" s*t.
    Best regards to all who have read to the end of this post

    Eric wrote:
    And Billy, what makes you think Windows Administrators do not know administration on command line?Experience dealing with Windows SAs over a decade and a half.
    I got my first part time job as a Windows Administrator in the beginning era of Windows 95 in a small netcafe. The boss does not pay me but like me use workstations there for free.
    In the early days, I administrate both Dos and Win3.1. I do my work on command line primarily and wrote a hell lot of *.bat files. In those days it were quite different. Because administration and configuration came from a command line DOS environment. We for example never configured networking for a Windows 3.1 or WFW 3.11 client via a GUI. It was done by directly editing system.ini and protocol.ini and making the correct changes.
    And this made the guys and me almost fail our Windows CE certification because the silly multiple question exam asked which buttons to click in the GUI to configure networking and not how it works at actual system configuration level. In other words, it tested your knowledge of the GUI functions and not the actual system config and admin itself.
    And then Windows NT was released and command line admin became the exception and not the rule. The All-Config-Eggs-in-a-Single-basket called the Windows Registry exemplified this flawed approach.
    But since Window95 I find myself spending less and less time on command line, more and more on GUI and my work efficiency increase tremedously. I can record the mouse clicks, the key presses, then covert then into a script. I can change every setting of the system in just few clicks. In the world of Linux, this is still a dream, isn't it?You are missing the point. There are a large number of admin GUI tools available for Linux. But these seldom serve as crutches to configure the system, because of a i-am-clueless-factor.
    If two systems, both are equally capable. To acheive the same thing, system A takes 2 working hours, system B takes 8 working hours. Doesn't this makes system B inferior compare to A?Because of the lack of knowledge and skill of a person to do the required on system B in 10 minutes now takes 8 hours instead? Ignorance of an operating system does not qualify as making system B inferior to system A.
    In past decade, Linux became very popular in the server market is not becasue there are an increasing number of Linux system administrators who are good at command line administration but because Linux is becoming more user friendly. And as a result. This increased administrator's work efficiency and the same time reduce training cost which invites more people to learn Linux.Incorrect. There is a reason that 483 of the 500 of the fastest and most powerful computer systems on this planet runs Linux. And only 5 runs Windows.
    And this has nothing to do with imagined user friendliness. It has everything to do with technical superiority and total cost of ownership.
    So the more idiot proof the system is, the better the system will become.No. The less idiots there are, the better the quality of system administration, the better security, the more robust the systems are.

  • Disable random Password generation button on Reset Password popup window.

    Hi ALL,
    We have a new requirement when user click on reset password tab on "Modify User" page, a pop up window will open with two options :
    1) Manually change the Password
    2) Auto-generate the Password (Randomly generated)
    I want to remove or disable this 2nd option. Can you please guide me what necessary changes required?
    Thanks,
    Amit

    It's easy enough to generate a random password. Use a
    constant string containing your alphabet (different
    systems have different rules about what characters
    are allowed). Then us Random first to generate a
    suitable length, then to pick a character from your
    alphabet for each slot. If there are further rules
    (e.g. "must contain at least one digit") then check
    the password you've just generated and if it fails
    the test, simply try again.
    But this isn't a particularly good system. It allows
    anyone to harrass a user by changing their password
    if they can guess their user name.
    The approach I favour is to send the user a one-time
    click-thru URL in an e-mail which allows them to set
    their password to anything they chose. That needs a
    special table in some data base. You generate a
    random token which acts as a one-shot password on a
    special "change password" page. As soon as the click
    through has been used then the database entry is
    deleted so that the token is invalidated. You should
    also invalidate the token if they log on in the
    normal way.I agree that the 'forgot your password' feature is nasty. I mean, we are normally enjoined from saying "invalid user id" or "invalid password", we have to say "invalid user id / password combination" or something to that effect. But by providing the 'forgot your password' feature, it would be trivial to write a bot to see which sites provide this, determine a good page from a bad (e.g., valid user id) and then have an easier time brute-forcing the password. Sad.
    On the other hand, I know personally that many companies are concerned with phishing attacks on their customers. As such, they have a blanket policy prohibiting any URL that hits a secured page in any way.
    So, what to do? :^(
    - Saish

  • Cannot remove login password!

    hello
    i cant remove my login password, the line is greyed out in the menu Security & privacy > General > Require password. My account is the administrator

    You can reset a Password (lost/forgotten) set on your Mac using 'Reset Password Utility' available with OS X Utilities tool. With OS X Mountain Lion, OS X Utilities tool can be generally found on a local hidden Recovery HD Partition if your Mac has one.
    To check If your Mac has got a local hidden Recovery HD Partition, start your Mac holding COMMAND + R buttons. If you hold the keys pressed enough and there is a local Recovery HD Partition on your Mac, you will be presented with OS X Utilities window.
    Click the 'Tool' menu item and choose 'Reset password'. Terminal window appears. Type 'resetpassword' into it and press 'Enter'. Reset Password window appears with User Account Names available on your Start-up Volume. Select the User Account Name and rest is simple to follow.
    One of the advantages of this method is that it does not require any Authorization method such as administrative authentication to reset a password.
    NOTE: If your Mac does not have a local hidden Recovery Partition on its system disk, you can create one using Disk Assistant application available from Apple. Search for the Disk Assistant in the support area.

  • Issue with Reset Password from Active Directory Integration Pack

    I seem to be having some issues with a subscription in the Reset Password activity from the Active Directory Integration Pack. The "User Password" field refuses to take a value from a subscription provided earlier in a Generate Random
    Text activity. As you will see in the screenshot below, when the Reset Password activity runs, the User Password value is blank.
    Any idea why this might be happening? It looks like a possible bug with the Active Directory Integration Pack.

    Hi John,
    I think this is not a bug, this should be by design because the password is a secure string. If you look for the Published data for Reset User Password activity at
    http://technet.microsoft.com/en-us/library/hh553463.aspx it is not listed there as well.
    If you need the the string (e.g. to send it via email) use the
    data from the "Generate Random Text" Activity.
    Regards,
    Stefan
    www.sc-orchestrator.eu ,
    Blog sc-orchestrator.eu

Maybe you are looking for