implications for users after changing the default domain passwd policy


hi,
have customer has open password policy implemented in ad.
eg : non complex, number of character, unlock after 5 minutes, never expires..

i've configured fine grained passwd policy, customer modify @ once.
can perform change on default domain passwd policy directly.

know happen non compliant passwords users when perform gpupdate after enabling modified policy?
eg :
users blocked or prompted change passwd, or need compliant when need change passwd next time?

hi

 these settings can seen user without logon, logoff, reboot, or gpo refresh.  policy written , replicated (fgpp or domain policy) changes following settings in effect , can impact or soon.
- minimum password age
- maximum password age
- lockout duration
- lockout threshold
- observation window
these settings in effect immediately, users not impacted until password change occurs.
- minimum password length
- password must meet complexity requirements
- reversible encryption

also check complete details here;https://blogs.technet.microsoft.com/askpfeplat/2013/10/11/active-directory-password-policies-when-does-a-password-policy-change-affect-a-user/                                                                


this posting provided no warranties or guarantees,and confers no rights. best regards burak uğur



Windows Server  >  Directory Services



Comments

Popular posts from this blog

Error: 0x80073701 when trying to add Print Services Role in Windows 2012 Standard

Disconnecting from a Windows Server 2012 R2 file sharing session on a Windows 7,8,10 machine

Event ID 64,77,1008 Certificates Events Windows Server 2008, 2008R2