Re: Which overrides? AD or Domain Security Policy?
- From: "Jorge de Almeida Pinto [MVP - DS]" <SubstituteThisWithMyFullNameSeparatedByDots@xxxxxxxxx>
- Date: Mon, 29 Oct 2007 20:09:35 +0100
yes...password never expires and cannot change password overrides the settings on default domain policy GPO password settings
however, the structure of the password must still meet the password policy settings at the moment you set the password
--
Cheers,
(HOPEFULLY THIS INFORMATION HELPS YOU!)
# Jorge de Almeida Pinto # MVP Windows Server - Directory Services
BLOG (WEB-BASED)--> http://blogs.dirteam.com/blogs/jorge/default.aspx
BLOG (RSS-FEEDS)--> http://blogs.dirteam.com/blogs/jorge/rss.aspx
------------------------------------------------------------------------------------------
* How to ask a question --> http://support.microsoft.com/?id=555375
------------------------------------------------------------------------------------------
* This posting is provided "AS IS" with no warranties and confers no rights!
* Always test before implementing!
------------------------------------------------------------------------------------------
#################################################
#################################################
------------------------------------------------------------------------------------------
"Brad G" <BradG@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message news:87A55C78-6BD1-4A8B-809B-A9F611F867BD@xxxxxxxxxxxxxxxx
I would like to apply strict password policy enforcement via Domain Security
policy, but need to test it first. We have a mostly mobile workforce and I
need to test the behavior for mobile users. What I would like to do is apply
it to the Domain Security Policy so it globally affects all users - but limit
it to just a few for testing at first.
So, if I enable the password requirements in Domain Security policy, but
have User A,B, C in the Active Directory individually configured at the
user-level for 'Password never expires" and "password cannot be changed" will
that over ride the domain security policy?
Another scenario would be if I wanted to apply it to all users except for an
administrator, etc, - is this how that would be managed?
Thanks!
.
- Prev by Date: Re: Global Catalog %%5?
- Next by Date: Re: Server's clock keeps on adding one hour after reboot.
- Previous by thread: Re: Which overrides? AD or Domain Security Policy?
- Next by thread: Re: "Access Denied" - Deleting User
- Index(es):
Relevant Pages
|
Loading