deprecated-password-storage-scheme sets pwdReset to true?!?
Hi,
so, this is on OUD 12.2.1.3.191219 and I admit, I have never actually tested this before, but ...
We're moving to a new default password storage scheme. To get the passwords rehashed as quickly as possible, we were thinking about adding the previously used password storage mechanism to the list of deprecated mechanisms, because the docs say:
If a user with this password policy authenticates to the server and his/her password is encoded with a deprecated scheme, those values are removed and replaced with values encoded using the default password storage scheme(s).
What the docs don't say is that this reencoding is treated like a password change through a third person and sets pwdReset to true.