0 votes

Hi Team

I am testing out a scheduled task to send out an email for password self service enrolment and located a previous question which suggested using the adm-PasswordSelfServiceEnrollmentPolicyDN property to determine if a user is enrolled or not however during my tests if i scope the task to a set of users which contains some already enrolled users the enrolled users also receive the enrolment invitation

Is the adm-PasswordSelfServiceEnrollmentPolicyDN property still the correct one to use with the value of empty or has the state of a users self service enrollment moved to another property?

by (90 points)

1 Answer

0 votes
by (271k points)

Hello Richard,

Unfortunately, the approach will not work as new authentication options were added since 2012 (e.g. via mobile applications). However, there is currently a setting in Password Self-Service policies that specifies how often enrollment notifications should be automatically sent to users who are not enrolled yet. image.png

If using the option does not meet your needs, please, provide all the possible details regarding the desired behavior with live examples.

0

Basically we want to send through a preliminary invitation html email targetting staff who have yet to enroll with more information about password self service via a scheduled task and then have another scheduled task which is a more compact html version of the same email which will be reminding the staff to enroll.

0

Hello Richard,

Thank you for clarifying. It can be done using a scheduled task configured for the Domain-DNS object type that will send the reminders in bulk. For us to provide you with detailed instructions, please, specify how exactly should it be distinguished whether a user should receive the first email or the second one. A live example of the desired workflow would be much appreciated.

Related questions

0 votes
1 answer

I need to create a scheduled task that disables AD accounts if inactive for 30 days and then send me an email that it has run. I've got the account disable part working but ... that was disabled but i need it to work once if it disabled any accounts or not.

asked Mar 23, 2021 by Jmbrown04 (60 points)
0 votes
1 answer

I'm in the process of creating a Web interface for requesting IT accounts. Upon submission, I want to run a Powershell script that will create an item in a Sharepoint task list.

asked May 14, 2021 by sandramnc (870 points)
0 votes
1 answer

Using the powershell module, I know how to create a scheduled task, and also how to bind to a scheduled task that is already known. I also have used code to try creating ... same time as another. These are all one-time tasks and will be removed once executed.

asked Jan 19 by aweight (40 points)
0 votes
1 answer

So I have custom forms for onboarding / offboarding users. We sometimes know 2-3 weeks in advance so I would like to add the ability to schedule these for the future. I ... to take all the data that was inputed and then process the request on the given date?

asked Aug 4, 2023 by thatcher (120 points)
0 votes
1 answer

Hello! how do i manage do get adaxes to remove all groups from the user after one month? We have a Business Rule where you can add an end of Date when the Account ... value field the powershell script works but not with the +1 Month. Thanks for your help!

asked Jun 14, 2023 by eww ag (140 points)
3,340 questions
3,041 answers
7,764 comments
544,924 users