Jump to content

Recommended Posts

Posted

Hopefully a quick question as it's easy enough to test, but to save me the hassle......

 

Has anyone deployed a fine grained password policy? My Default domain policy is enforced, will this trump the fine grained password policy?

Posted

1. Yes. Works nicely.

 

2. I've not actually tested it, but I believe that any user object that is targeted by a FGPP will ignore the password requirements in the Default Domain Policy.

  • 3 weeks later...
Posted
Hopefully a quick question as it's easy enough to test, but to save me the hassle......

 

Has anyone deployed a fine grained password policy? My Default domain policy is enforced, will this trump the fine grained password policy?

 

On my list of things to deploy this month. Will advise if it goes well.

 

The way i understand it from this article How To Manage Active Directory Password Policies in Windows Server 2008/R2 -- Redmondmag.com If the domain password policy is stronger it would trump the FGPP settings, but that is quite an easy situation to avoid by monitoring the policies you put into place. You could also use this as a method for only having more complex requirements for certain groups e.g. System administrators

 

If you put it in let us know how you get on.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...