I have a similar issue going on with my LDAP configurations. There are 3 admins that can login via toke to our firewalls but I have another guy that is unable to login because it continues to prompt him for a password change. He had the sysads reset his account and rebuild his profile on the firewall but there was still no change. As far as I can tell there is no reason why he should be able to login.
... View more