Error: -319 when attempting to change user password in ConsoleOne, iManager, or NWADMIN

(Last modified: 27Sep2004)

This document (10093701) is provided subject to the disclaimer at the end of this document.

fact

Novell eDirectory

Novell Modular Authentication Service (NMAS)

symptom

Error: -319 when attempting to change user password in ConsoleOne, iManager, or NWADMIN

change

NMAS installed with a newer version of eDirectory or the Novell Client

fix

Since NMAS gets installed by default with the newer versions of eDirectory and the Novell Client, or since many people are now implementing NMAS, but possibly not familiar with the new login policies and how they take precedence over other policies or practices that were previosuly used or adminstered through ConsoleOne or NWADMIN.  In respect to this many times the -319 error is generated because some component of the login policies is not being followed or has triggered another component of the policy to become effective. 

Example - one of the common causes of the -319 error we have discovered is that in the policy there is a field to "Limit the number of password to store in the history list" is set to a certain number (example in the screen shot shows 24) and there is another field where the "Number of days before password expires" is also set at a specific number (the example shows 90 days for this value).  Well since most users and even some administrators do not understand or know about the policy, they try to make a password changes, and for some reason it does not meet other requirements (length, special characters, etc) so that change is unsuccesful, or they change their password frequently until they max out the number stored in the history list, and they cannot change their password, so the adminsitrator attempts to make the change and they get -319 error, in this case the error becomes somewhat generic and not very informative for troubleshooting purposes.

So you can take and change the policy so that the "Number of days before password expires" is set to zero (0), and apply the change.  Then force a heartbeat on the server console with the SET DSTRACE=ON, SET DSTRACE=+S, SET DSTRACE=*H commands.  Then you can use one of the methods as administrator to change the users password, which should now work successfully.  Also make sure to go back and set the value to the previous number it was set at for the "Number of days before password expires" field.

document

Document Title: Error: -319 when attempting to change user password in ConsoleOne, iManager, or NWADMIN
Document ID: 10093701
Solution ID: NOVL97910
Creation Date: 20Jul2004
Modified Date: 27Sep2004
Novell Product Class:Novell Directory Services

disclaimer

The Origin of this information may be internal or external to Novell. Novell makes all reasonable efforts to verify this information. However, the information provided in this document is for your information only. Novell makes no explicit or implied claims to the validity of this information.
Any trademarks referenced in this document are the property of their respective owners. Consult your product manuals for complete trademark information.