LDAP password expiration incorrect

I’m wondering if I can get some help from the community on this one since I haven’t made any progress with it…

We have on premises Active Directory and authenticate our VPN users through LDAP on the SonicWall NSA 2700.

Our default domain policy has a password expiry policy of 90 days. Additionally, however, we have a fine grained password policy applied to certain users with password expiration of 1 year. (Their trade off is a 15 character password with complexity requirements)

When the users in the fine grained password policy log onto the VPN, they get a notice that their password is about to expire. This happens when their password is around 85 days old.

Does anybody know how I can either configure the SonicWall to not notify people of a password expiration, or to get the SonicWall to do it correctly based on the fine grained password policy?

Thanks in advance.

Same experience.

Create a fine grained policy for all users. And disable the pwd expiration parameter on the default password policy.
It is the global vpn client that reads the default policy and sends a notification