SUSE Linux iTOps Tube

Wednesday, May 9, 2012

LDAP - Enabling password expiration

We are about to enable Password Expiration for all users on our RHDS server. Theres an issue with this though.

The script im writing to email all users whos passwords are about to expire isn't done yet, but I need to set the expiration today, due to PCI deadlines.

In theory, I should be able to reset the last time the passwords were updated, to today, so when I enable the expiration on the server, no accounts will be locked, is this correct?

If so, what field should be updated? passwordexpirationtime? and what do I set it up as? just todays date?

