Self-service password reset for Active Directory Users
EAA allows users to reset their password without the need to contact the IT administrator. This self-service reduces the friction for the end-user and also reduces the additional work for administrators from routine password-reset tasks. It is supported in English and Japanese languages only.
NoteThis feature must be enabled in your contract by contacting Akamai Support.
Enable Password Reset in the Identity Provider
You can allow your end-users to reset the password for active directory associated with the IdP.
-
Log in to Enterprise Center.
-
In the Enterprise Center navigation menu, select Application Access > Identity & Users > Identity Providers.
-
Select your IdP to open it.
-
Go to Settings > Advanced.
-
Enable Password Reset.
-
You must have an Active Directory associated with the IdP. These configurations are available:
- In the Directory > Settings page, you must use Host ldaps option.
- Enable Allow users to change password and Allow users to reset password in the Advanced Settings page. See Password Management for AD, LDAP directory services. Note: Follow password restrictions while selecting the password.
- The user or users must be added to the groups for whom you want to allow the self-service password.
-
Click Save and Deploy, to save and deploy the changes.
End-user experience
The end user follows this procedure to reset their password:
- The end-user logs into the IdP login page, they click on the Change or Reset Password link.
- Enter the Username and Captcha.
- Click Submit.
- A confirmation message is shown indicating that an email is sent to the end-user with steps to reset the password.
- An email is sent to the end-user with the organization email added by the admin to the groups in the directory. The email template is as under:
- Click the Reset Password link. The link is valid for 15 minutes and then it expires.
- Enter the New Password and Confirm Password. The password restrictions for setting the password are shown to the end-user.
- Click Submit.
A success confirmation message is shown to the end-user, indicating the password has been reset.
