To resolve this issue, use one of the following methods:
- Use the facility to remotely change the password of a user to set the password before he or she connects through RDS.
- Change the registry permissions on the following registry key to enable read access for ANONYMOUS LOGON, and then inherit that down the registry tree:
HKEY_LOCAL_MACHINE\SOFTWARE\Policies
In Windows Server 2012, the server rejects the logon of a user whose password expired or is set to be changed at the next logon. In this case, you have to use method 1 to set the password. For advance features upgrade to
windows server 2019
Regards,
Adrian