Solved

How can I disable the complex password requirements in Server 2008?

Posted on 2008-10-29
10
14,005 Views
Last Modified: 2012-05-05
I am new to Server 2008 but I have administered many servers.  I am trying to change the complex password requrement for the domain and users policy and it is grayed out.  I am logged in on the server as a user with administrative security but it is still grayed out and not available.
0
Comment
Question by:captjcret
10 Comments
 
LVL 13

Expert Comment

by:brent_caskey
ID: 22835050
You can push out a GPO or change the local computer security policy in the following location:
Computer Configuration\Windows Settings\Security Settings\Account Policies\Password Policy
Setting: Password must meet complexity requirements


This article gives more step-by-step information: http://technet.microsoft.com/en-us/library/cc264456.aspx
0
 
LVL 13

Expert Comment

by:brent_caskey
ID: 22835063
You may need to change the setting on an existing GPO like the Default Domain Controller Policy or Default Domain Policy.

You can run RSOP.msc to see which GPO is applying the setting.
0
 

Author Comment

by:captjcret
ID: 22835337
I have tried to do it in the computer configuration adn Password policies and this is where the option I want to check or uncheck is grayed out.  Under the GPO I have looked at the policies and are seeing nothing related to passwords, just permissions.
0
NFR key for Veeam Backup for Microsoft Office 365

Veeam is happy to provide a free NFR license (for 1 year, up to 10 users). This license allows for the non‑production use of Veeam Backup for Microsoft Office 365 in your home lab without any feature limitations.

 
LVL 13

Accepted Solution

by:
brent_caskey earned 250 total points
ID: 22835501
I believe that you are going through gpedit.msc to try to change this setting. On a windows 2008 domain controller (2000/2003 as well, I believe) the password options will be grayed out.

So, to change this setting, you have to do the following:

1. gpmc.msc (or administrative tools > Group Policy Management)

2. In the GPMC, expand out the domain and then go to Group Policy Objects

3. Right Click the Default Domain Policy and select Edit.

4. Go to Computer Configuration\Windows Settings\Security Settings\Account Policies\Password Policy and modify the Setting: Password must meet complexity requirements

5. On the server, from the command line, run gpudate /force

You may need to restart the server to have the policy take affect.


Let me know if you need anything else.
0
 

Author Comment

by:captjcret
ID: 22835745
That was it! Thanks!
0
 
LVL 13

Expert Comment

by:brent_caskey
ID: 22835909
If that worked, accept comment ID 22835501 as the correct solution.

Thanks!
0
 

Author Closing Comment

by:captjcret
ID: 31511364
Thanks!
0
 
LVL 1

Expert Comment

by:duzbin
ID: 25605367
Hi, When I try this, it doesnt save the changes it gives me an error - any ideas?
0
 

Expert Comment

by:stevejenner100
ID: 32262546
worked great thanks
0
 
LVL 1

Expert Comment

by:csePixelated
ID: 36105526
@duzbin you may need to check what you are running, its "gpupdate /force"not "gpudate /force", if that's not it where does it give you the error?
0

Featured Post

Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Users of Windows 10 Professional can disable automatic reboots using the policy editor. This tool is not included in the Windows home edition. But don't worry! Follow the instructions below to install (a Win7) policy editor on your Windows 10 Home e…
The recent Microsoft changes on update philosophy for Windows pre-10 and their impact on existing WSUS implementations.
This tutorial will walk an individual through locating and launching the BEUtility application to properly change the service account username and\or password in situation where it may be necessary or where the password has been inadvertently change…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

821 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question