The "User Cannot change the password" flag for Active Directory Account creation in RSA Identity Governance and Lifecycle does not stop the user from changing their password
Originally Published: 2017-07-26
Article Number
Applies To
Issue
Cause
https://msdn.microsoft.com/en-us/library/aa746398.aspx?f=255&MSPPError=-2147217396
Resolution
To do it in one command, the syntax would be as follows:
Get-ADUser -Identity "<distinguishedName>" | Set-ADUser -CannotChangePassword $True
Related Articles
RSA Governance & Lifecycle Recipes : Dashboard - Active Directory (AD) Summary 47Number of Views Account summary table export includes the HTML tags that construct the account mapping button in RSA Identity Governance &… 38Number of Views How to change the AveksaAdmin password in RSA Identity Governance & Lifecycle 364Number of Views Configure E-mail Notifications for Self-Service User Account Changes 58Number of Views How to use the VBS script to change passwords in RSA enVision 79Number of Views
Trending Articles
RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA Authentication Manager 8.9 Release Notes (January 2026) How to install the jTDS JDBC driver on WildFly for use with Data Collections in RSA Identity Governance & Lifecycle RSA Authentication Manager 8.8 Setup and Configuration Guide Artifacts to gather in RSA Identity Governance & Lifecycle
Don't see what you're looking for?