Skip to main content


 

Symptoms


We are using a Windows Active Directory account for our K2 admin account. We are interested in managing the password for this account using password vault software that will automatically change the password on a predetermined schedule. Since the password for this account is entered during the installation of K2 blackpearl, we would like to verify that managing this account's password in this way would not impact the K2 blackpearl application.
 

Diagnoses


Configuration must be run for Blackpearl and Smartforms after the user account has it's password changed.
 

Resolution

Password is being changed for user account automatically but, in order to have the password change run over to K2 as well, the configuration for Blackpearl and Smartforms must be run with the new user credentials for the admin accounts. When the configuration tool is run this is when K2 saves the password and username. K2 will not react when the password is changed in AD and update the configuration automatically. The Admin and Service accounts are designed to be static, a change in password was not implemented in the design. This is why you must run the configuration tools. There is no automatic way to run the configuration tool in time with a password change so this scenario of automatically updating the Service/Admin accounts' password is not possible with the current version of K2.




 

Obviously K2 blackpeal and smartforms were not "designed" to be enterprise level applications.  All corporate systems and enterprise level applications require service account password changes on a regular basis as a standard security practice.  This is a MAJOR flaw in the system that should be addressed.


Reply