My zenworks server is running 11.1a, MS AD directory is configured as the user sources and some bundles are assigned to AD user/user groups. On Win7 workstations, user get through the domain logon and get all these user NAL icons appear on the Desktop. When their password expire and change their password, an extra zcm password dialog box pop-up and ask for password.

I knew there is a registry key DisablePassiveLoginPrompt to suppress the zcm prompt but found that the user is not logged in to zcm when the user password is changed on expire and no user nal icons would show up. It is not possible for me to re-assign all these user associated icon to workstations.

Password change policy is common practice in large firm, anyone encounters similar problem? Is there any setting I'm missing. I tested upgrade to 11.2 but problem still there.