We historically have used Avatier (with Gina replacement/web interface and not 
cheap), but are now looking at implementing FIM 2010's self-service password 
management (also with modified Gina - and can be affordable with right 
enterprise agreements)

http://blogs.technet.com/b/aho/archive/2009/11/09/forefront-identity-manager-credential-management-part-4.aspx


From: James Rankin [mailto:[email protected]]
Sent: Thursday, February 16, 2012 11:11 AM
To: NT System Admin Issues
Subject: Re: Self-Service Account Unlock

Which is why Citrix can do it, as they have their own GINA. Which, as I forgot 
to add and MBS has pointed out, don't make it cheap.
On 16 February 2012 18:54, Michael B. Smith 
<[email protected]<mailto:[email protected]>> wrote:
There are a couple of them out there - but they aren't cheap - and I don't 
recommend it.

Putting the recovery button on the logon screen requires a "custom GINA". A new 
custom GINA is required every time specific pieces of the Windows kernel are 
updated (I think it's lsass.exe, but I'm not 100% on that and can't investigate 
right now). Which definitely happens by each service pack and may happen many 
patch Tuesdays.

I think it's better for someone to walk to the office next door, or borrow 
their neighbor's computer for a couple of minutes.

From: Sean Rector 
[mailto:[email protected]<mailto:[email protected]>]
Sent: Thursday, February 16, 2012 1:45 PM
To: NT System Admin Issues
Subject: Self-Service Account Unlock

I've been looking through the multitude of options, but they all seem to be 
web-portal-based.  Is there one that puts the Unlock option on the Logon Screen?

My point is - what's the use of a web-portal version when they can't log on to 
their machine?  A kiosk-type user account doesn't seem the safest route to go.

Sean Rector, MCSE

Information Technology Manager
Virginia Opera Association

E-Mail:         [email protected]<mailto:[email protected]>
Phone:        (757) 213-4548<tel:%28757%29%20213-4548> (direct line)
{+}

Tickets and Subscriptions On Sale Now!
Orphée | The Mikado
Visit us online at www.VaOpera.org<http://www.vaopera.org/> or call 
1-866-OPERA-VA

Experience the Beauty, Power & Passion of Virginia Opera.

________________________________

This e-mail and any attached files are confidential and intended solely for the 
intended recipient(s). Unless otherwise specified, persons unnamed as 
recipients may not read, distribute, copy or alter this e-mail. Any views or 
opinions expressed in this e-mail belong to the author and may not necessarily 
represent those of Virginia Opera. Although precautions have been taken to 
ensure no viruses are present, Virginia Opera cannot accept responsibility for 
any loss or damage that may arise from the use of this e-mail or attachments.

{*}

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to 
[email protected]<mailto:[email protected]>
with the body: unsubscribe ntsysadmin

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to 
[email protected]<mailto:[email protected]>
with the body: unsubscribe ntsysadmin



--
"On two occasions...I have been asked, 'Pray, Mr Babbage, if you put into the 
machine wrong figures, will the right answers come out?' I am not able rightly 
to apprehend the kind of confusion of ideas that could provoke such a question."

***** IMPORTANT INFORMATION/DISCLAIMER *****

This document should be read only by those persons to whom it is addressed. If 
you have received this message it was obviously addressed to you and therefore 
you can read it, even it we didn't mean to send it to you. However, if the 
contents of this email make no sense whatsoever then you probably were not the 
intended recipient, or, alternatively, you are a mindless cretin; either way, 
you should immediately kill yourself and destroy your computer (not necessarily 
in that order). Once you have taken this action, please contact us.. no, sorry, 
you can't use your computer, because you just destroyed it, and possibly also 
committed suicide afterwards, but I am starting to digress......

The originator of this email is not liable for the transmission of the 
information contained in this communication. Or are they? Either way it's a 
pretty dull legal query and frankly one I'm not going to dwell on. But should 
you have nothing better to do, please feel free to ruminate on it, and please 
pass on any concrete conclusions should you find them. However, if you pass 
them on via email, be sure to include a disclaimer regarding liability for 
transmission.

In the event that the originator did not send this email to you, then please 
return it to us and attach a scanned-in picture of your mother's brother's wife 
wearing nothing but a kangaroo suit, and we will immediately refund you exactly 
half of what you paid for the can of Whiskas you bought when you went to Pets 
At Home yesterday.

We take no responsibility for non-receipt of this email because we are running 
Exchange 5.5 and everyone knows how glitchy that can be. In the event that you 
do get this message then please note that we take no responsibility for that 
either. Nor will we accept any liability, tacit or implied, for any damage you 
may or may not incur as a result of receiving, or not, as the case may be, from 
time to time, notwithstanding all liabilities implied or otherwise, ummm, hell, 
where was I...umm, no matter what happens, it is NOT, and NEVER WILL BE, OUR 
FAULT!

The comments and opinions expressed herein are my own and NOT those of my 
employer, who, if he knew I was sending emails and surfing the seamier side of 
the Internet, would cut off my manhood and feed it to me for afternoon tea.


~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to 
[email protected]<mailto:[email protected]>
with the body: unsubscribe ntsysadmin

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to [email protected]
with the body: unsubscribe ntsysadmin

Reply via email to