Citrix Password Manager Helpdesk Utility ======================================== This application is designed for use with Citrix Password Manager V4.x. It is intended to be used as a help desk console for one task only - reset an Active Directory User's information in the central store. This results in the selected user being returned to an initial state. In Active Directory central stores, the user data (credentials, security questions and answers, and so on) is deleted and the user is flagged as having had their data reset. A HelpDesk Administrator can use Reset user data if users forget the answers to their security questions or to reset their credential data if the user’s data somehow is corrupted. When the user later uses the agent software to contact the central store, the user’s local credential store is cleared of all data, and the user must re-enroll, similar to initial credential setup. Important: Password history is retained on a per-user basis. If the data for a user is reset, the password history is removed and password history cannot be enforced for the deleted passwords. Usage ======================================== This utility is should be run by executing PMHelpDesk.exe. The following files are required to be present in the same directory: - PMHelpDesk.exe.config The following files may be required if MS PIA 2005 is not installed:\r\n"; - AxInterop.SHDocVw.dll - Interop.SHDocVw.dll NOTE: This utility can only be run on a machine running the the correct SSL certifcate for the Password Manager Service. Notes on the PMHelpDesk.exe.config file. ======================================== The PMHelpDesk.exe.config must be configured prior to using this utility. This file contains the following: - the location of the password manager services - the Fully Qualified Domain Name of the Active Directory - the Root OU in the Active Directory that contains the PM users Notes on this Configuration file Change the following values to suit your environment: - key="PMHelpDesk.ProvisionServices.ProvisionSvc" value="https://servicemachinefqdn/MPMService/ProvisionSvc.asmx"/> Set this value to the location of the password manager services eg. value="https://myPMserver.mydomain.local/MPMService/ProvisionSvc.asmx"/> - key="PMHelpDesk.ADHelper.ADLookup" value="domain.local"/> Set this value to the FQDN. This value can be left blank. eg. value="mydomain.local"/> or eg. value=""/> - key="PMHelpDesk.ADHelper.OULookup" value=""/> Set this value to the Root OU in the Active Directory that contains the PM users. This value can be left blank. eg. value="myStaff"/> (This would be viewed as OU="mystaff",DC="mydomain",DC="local") or eg. value=""/> Common Errors: ======================================== Error: MalFormedRequest 119 InvalidPsoId This error relates to the incorrect domain being entered in either the PMHelpDesk.exe.config file or in the program. Ensure the FQDN is entered into either the file or the program. This utility is FREEWARE and was written by Warren Simondson of Ctrl-Alt-Del IT Consultancy, Australia. www.ctrl-alt-del.com.au The freeware version is offered AS IS. Ctrl-Alt-Del IT Consultancy has made every effort possible to ensure that GETTSCIP is free of any bugs or errors, however in no way this application to be considered error or bug free. You assume all responsibility for any damages or lost data that may result from any errors or bugs in this application. IN NO EVENT WILL Ctrl-Alt-Del IT Consultancy BE LIABLE TO YOU FOR ANY GENERAL, SPECIAL, INDIRECT, CONSEQUENTIAL, INCIDENTAL OR OTHER DAMAGES ARISING OUT OF THIS PRODUCT.