Re: complex passwords

Tech-Archive recommends: Fix windows errors by optimizing your registry

From: Derek Melber [MVP] (derekm_at_braincore.net)
Date: 06/01/04


Date: Mon, 31 May 2004 20:02:49 -0700

password complexity only works at the domain level, for domain users. At the
OU level, it only affects local users in the local SAMs of the computer
objects that are in the OU path.

-- 
Derek Melber
BrainCore.Net
derekm@braincore.net
"Cindy" <anonymous@discussions.microsoft.com> wrote in message
news:15d1a01c4477a$259a06d0$a601280a@phx.gbl...
> Hi-
> I'm having trouble getting my GP for "meet complex
> password requirements", to apply.  I think I have
> everything set right, I've cleared all the setting in the
> user properties for passwords.  Checked the setting for
> reset password at next login.  I get the message that the
> password has to be changed... but it will accept any
> password.   On one instance, I checked th Rsop for a
> user/computer and it said the GP was denied - said it
> said "empty"...  , yet on another computer it worked OK???
> I have applied it to a test OU, with 4 computers & 4 usrs.
>
> Are there any other policies that might be over riding
> this one?  Also, I find it a bit confusing that the
> password policy on set as machine GP's and not User GP's
> when all the policy apply to the user.  Am I missing
> something?  Are there any setting that that apply to
> users that  am missing?
> Thanks in advance for your time - any help is
> appreciated!!!
>
> Cindy
>
>
>
>


Relevant Pages

  • Re: complex passwords
    ... How can I test the policy, if it has to be applied at the ... >password complexity only works at the domain level, ... it only affects local users in the local SAMs ... >> users that am missing? ...
    (microsoft.public.windows.group_policy)
  • Re: complex passwords
    ... >>password complexity only works at the domain level, ... it only affects local users in the local SAMs ...
    (microsoft.public.windows.group_policy)
  • Re: Security hierarchy
    ... I have tried all the suggestions plus a new top GPO at domain level ... but tried all the combos with DC and local settings also. ... Try a Google advanced search for groups using password complexity ... >> stop wasting time on it but it is scary if it could get hosed so ...
    (microsoft.public.win2000.security)
  • Re: problem with create user
    ... you have a password complexity enabled on the domain level, ... Contain characters from three of the following four categories: ... English uppercase characters ...
    (microsoft.public.windows.server.active_directory)