G
Guest
Guest
Archived from groups: microsoft.public.win2000.security (More info?)
I setup a password policy in the default domain controller policy under the domain controllers OU and then set each individual account password to expire. Also configured is password min character lentgh is 5 characters and password history = 3. I also am allowing users to change there password immediately. I also have set password expires in 1 day for test purposes. Last, I have disable CTRL ALT DEL when logging on. When users boot up there pc's they do not have to hit the CTRL ALT DEL keys to logon and they get the message that their passwords expired. The users however are able to change their passwords to less than 5 charaters and they can reset their password after changing it back to the original password. Last, the next time users boot their pc's after a day or so they are not prompted with the password expired again. Security permissions for these users is set to Apply and Read Group Policy. Why is the default domain controller policy ignoring minimum characters length, etc... Any help would be appreciated.
I setup a password policy in the default domain controller policy under the domain controllers OU and then set each individual account password to expire. Also configured is password min character lentgh is 5 characters and password history = 3. I also am allowing users to change there password immediately. I also have set password expires in 1 day for test purposes. Last, I have disable CTRL ALT DEL when logging on. When users boot up there pc's they do not have to hit the CTRL ALT DEL keys to logon and they get the message that their passwords expired. The users however are able to change their passwords to less than 5 charaters and they can reset their password after changing it back to the original password. Last, the next time users boot their pc's after a day or so they are not prompted with the password expired again. Security permissions for these users is set to Apply and Read Group Policy. Why is the default domain controller policy ignoring minimum characters length, etc... Any help would be appreciated.