Jump to content

Recommended Posts

Posted

We are looking to implement Azure File Storage and AD join the Storage Account - which creates a computer object in a designated OU.

 

There seems to be lots of conflicting information about if this account will be required to reset it's computer account password (and potentially break the storage account)

 

Some articles mention creating a GPO to prevent the machine account resetting, but would this object even apply a GPO? others state that it's seamless management, and won't need to be touched, but there is an optional powershell script to update the password if you need to.

 

our DDP currently sets Max Age of passwords as 90 Days but the policy to configure Domain member: Maximum machine account password age is not currently set, so I would assume defaults to 30 days

 

Has anyone set this up already and have any tips\advice?

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...