Solved

default domain policy  ,password never expires , plan to implent maximum password age  42 days,problem  it include domain admins and sql accounts  not applied the this policy how can i come over this

Posted on 2008-10-23
5
708 Views
Last Modified: 2011-10-19
I have default policy applied ,password never expires ,but now we are planning to implent maximum password age for 42 days,problem here is it also include domain admins and sql accounts which must not applied the this policy how can i come over this
0
Comment
Question by:girish_hn2003
  • 2
5 Comments
 
LVL 5

Accepted Solution

by:
balmasri earned 250 total points
ID: 22784930
set the property of  these accounts to never expired individually.
Active directory users and computers console> User property>account
Untitled.jpg
0
 

Author Comment

by:girish_hn2003
ID: 22784976
thanks but is there any other option like create a new policy ,and enable option override and link it to default domain policy and apply to only to domain admin group in security filtering
0
 
LVL 70

Assisted Solution

by:Chris Dent
Chris Dent earned 250 total points
ID: 22785186

Not with Windows 2003 I'm afraid.

If you were to upgrade your domain to 2008  (including the shift to 2008 Native Mode) you could use Fine Grained Password Policies. Without 2008 you're stuck with one password policy per domain, or third party software to look after it for you (there's nothing native).

Chris
0
 
LVL 5

Expert Comment

by:balmasri
ID: 22785263
In windows server 2003  domain level. Only one Password policy for a single domain. In windows 2008 , you have fine-grained   password policy you can apply.

http://technet.microsoft.com/en-us/library/cc770394.aspx
http://technet.microsoft.com/en-us/magazine/cc137749.aspx
http://www.experts-exchange.com/OS/Microsoft_Operating_Systems/Server/2003_Server/Q_23244174.html
0

Featured Post

Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Find out how to use Active Directory data for email signature management in Microsoft Exchange and Office 365.
While rebooting windows server 2003 server , it's showing "active directory rebuilding indices please wait" at startup. It took a little while for this process to complete and once we logged on not all the services were started so another reboot is …
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

839 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question