Not secure http://localhost:8080/DynamicsNAV110 to https://localhost:8080/DynamicsNAV110 (HTTP - HTTPS)

Hi,

System architecture for NST that uses NAVUserPassword is designed to use special domain user account and assign it to the NST. This domain user account is used just for NTST with NAVUserPassword.

You should enable “Password never expires” for that user account. But this has to be done on Active Directory object (domain user account).

Thank you
BR Damjan

I disagree… You should never set “Password never expires”.

If the account is supposed to be used by a normal user - it should at least expire every 90 days. Saftety First!!

Hi Palle,

Why do you think a password is better, just because it expires?

The last years IT security experts recommend NOT to change the password every 90 days, but instead use longer and better passwords. [emoticon:c4563cd7d5574777a71c318021cbbcc8]

Simply because of that if the user needs to login to the client every single day, the user is likely to choose a shorter and easy password. A short password that never expires are easier to hack than a password that at least needs to be changed from time to time.

One of the largest password-manager-software companies wrote this:

https://blog.lastpass.com/2018/08/often-change-password.html/

Hi,

I have used NavUserPassword only at one huge client that has over 300 retail stores. Their System Admin configured user account and said that because of SSL connection which requires instalked certificate, it’s complied with IS policy…

So, perhaps each case differs from each other.

I just hope our colleague [mention:dcef55e7754d47ab92d2d2ad324b016e:e9ed411860ed4f2ba0265705b8793d05]has resolved the issue.

Thanks, Damjan