- Win 2003 domain security policy question
- Posted by Curious George's Twin on April 27th, 2005
Dear Colleagues:
With Windows NT networks (and I believe 2000 as well), I was unable to set
up a stronger password policy for certain groups.
My desired result is to put a stronger password policy on one group, but a
weaker one on another. Specifically, password complexity rules.
Is this possible with Windows 2003 active directory enabled networks and
those that have 2000 servers in the mix?
Thanks,
CC
- Posted by Ford Prefect on April 27th, 2005
"Curious George's Twin" <shaggy@whoamitoday.net> wrote in message
news
4Gbe.1304$Hf6.352@fe11.lga...
No, its not possible.
Its a computer policy setting not a user policy setting.
Ford...
- Posted by Nick on May 2nd, 2005
Curious George's Twin wrote:
Bunch the computers into Organizational Units (OU) and set an policy on
the OU. The policy will only apply onto local accounts set on those
computers. This is probably not what you want.
For domain accounts the only way to do this would be to bunch the users
into separate domains. You can only have one account policy per domain
and it must be set at the domain level.
There is no way to do this for groups of users because account policies
are applied onto computers.
HTH
Nick