Authorization

It’s implemented driver Keystone LDAP Driver extending the functionality of the built-in ldap for ability of correct authorization request handling from LDAP-user. The driver correctly interprets the response from the server Active Directory in case of the user has a forced password change at the first login. The driver also correctly saves the changed password in Active Directory, previously the driver Keystone did incorrectly process requests from the server Active Directory (was implemented as the generally accepted LDAP). Now a password change form appears in RSclient in this situation. The behavior is similar when connecting RSclient in console mode by asking for a new password without graphical shell.

Successful authorization using the driver and ability to correctly handle a password change are supported for the following systems:

  • 2008, 2008r2, 2012, 2012r2, 2016 Windows Server with forest operating modes;
  • 2.4.45 version OpenLDAP;
  • 4.2.14 version Samba with role “AD DC”.