I have had Password Recovery set up since 1999, but I’ve never used it. With the introduction of policies in ND6, I finally have my users set up so their passwords expire every 90 days. In preparation for the first round of expirations, which will happen in a week, I decided to give it a try. The Admin help tries to be thorough, but it ends up being a convoluted and confusing mess. I finally tried muddling through, and I got it to work, but I’m not sure if it’s supposed to be like this. Here’s what I did:
-
Open the password recovery database, sorted by name and looked for my entries. The most recent one was from 2003. According to the help it’s supposed to update recovery information automatically in ND6. Anyway, I saved the ID file to hard drive and extracted the recovery password using the Admin client.
-
I Closed all Notes clients, reopened Notes, clicked Cancel on the password prompt and selected Recover Password from the screen.
-
The prompt that appeared said “Enter a password for one of the following administrators”. I am one of the administrators listed, so I tried entering my password. No go. Okay, so it means use the recovery password, so I tried that. It didn’t work, either.
-
I logged in normally and did a screen print of the password recovery screen to make sure I hadn’t written it down wrong, then went back through the recovery process in the Note client. The password still didn’t work.
-
I exported the recovery information to myself, accepted it, extracted the recovery password again, and went back through the process. Lo and behold, it worked!
-
I was presented with the normal password prompt for “Location None”. I tried entering the recovery password here, but it didn’t work. I clicked Cancel, the same prompt reappeared. After clicking Cancel an estimated 10 times, I was finally given a dialog to change my password.
Based on my experience I have the following questions:
-
Why was the most recent ID for me from 2003? Is it supposed to update automatically?
-
Why did I have to export recovery information and accept it before I could get a valid recovery password? Should the recovery password from the older ID have worked?
-
Since the point of this is the user forgot his password, why does it prompt the user for his password after he enters the recovery password? It would make more sense if it prompted the user to change his password rather than him having to click Cancel a bunch of times.
Any insight would be greatly appreciated.
Thanks,
Charles