While monitoring the Security - Authentication dashboard for the Aria Operations Content Pack in Aria Operations for Logs, query of the Security related messages over time grouped by cluster role widget displays password expiry logs despite admin and root accounts functioning correctly. The error observed is: Password expired: [Number] day(s) ago. Password needs to be changed to proceed.
[Image Description: Screenshot of the query ran from Aria Operations for Logs Security - Authentication dashboard - Security related messages widget with the password expired error.]
Aria Operations 8.18.x
Aria Operations for Logs 8.18.x
The Aria Operations admin account password has become misaligned between the local OS and the application layer. This discrepancy causes internal application-layer authentication failures for components such as the Gemfire Function Executor, which triggers the lockout policy and generates password expiry logs in connected services like Aria Operations for Logs.