This article is used to troubleshoot the main errors with password rotation for Windows Server.
Error: “Response Code: This Problem…”.
For the error above, it´s needed to verify the intern network of the computer and check if it is connecting to the VaultOne API.
Error: Active Directory user, access denied error in the script.
The Script should be executed by a user with elevated permissions (Administrator). Or the user, without elevated permissions, needs to have the “Reset Password” permission enabled.
Error: “This credential doesn’t rotate because the version is different!”
The password rotation couldn’t be completed because the last attempt returned an error. To regulate the problem, you need to go into your vault and look for your credential, after that click in actions > synchronize password. Select the current password for the user and click confirm.
Error: “You need administrator privileges to continue using this script”.
The script for the password rotation needs to always be executed by an user with administrative permission.
Error: “Response Code: 429”
Due to the sheer number of requests to password rotate, it’s needed to wait at least one hour to try again.
Error: “Could not authenticate in VaultOne API”
This problem can occur when the credential in your vault don’t have the password rotation enabled, or the asset that make the password rotate was changed or updated, or the authentication key was changed in the vault, while not being changed in the script.
To change the authentication key, a new key needs to be generated, and in the computer that the script is running, delete the file “.passwordRotation” present in the directory “%LOCALAPPDATA%\VaultOne\PasswordRotation\<user of the credential>”. After that, restart the script to insert the new key.
Error: “<user> not found. Please, ensure the user exists and try again.”
The user was not found in the local machine. Verify if the user exists in your Windows installation.
Error: “<user> not found in your domain. Please, ensure the user exists in your domain and try again.”
The user was not found in the domain that your computer finds itself in. Verify if the user exists inside the domain.
In case of any doubt. Contact us [email protected]