Solved

Server 2013 password complexity

Posted on 2014-04-07
5
221 Views
Last Modified: 2014-07-22
I have change local security settings and GPO settings we have rebooted several times but our DC is still requiring complex passwords for users in AD, any ideas on how to resolve this we do not wish to use complex passwords.
0
Comment
Question by:jhuntin
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
5 Comments
 
LVL 31

Accepted Solution

by:
Frosty555 earned 500 total points
ID: 39984822
Look at your resulting set of policies and gpresult. Most likely you did not change the correct GPO, or something is overriding it. Or, the GPO hasn't updated on the server yet. For password complexity of domain users, you should not need to make any changes to local security policy, it will be a GPO change only.

Resulting Set of Policies - allows you to see what the resulting policies were that have been applied to the machine. For each policy, you can see which GPO was responsible for setting it.

Start->run->rsop.msc, and navigate to the password complexity policy.

Also, open a command prompt window and run gpresult /r, this will show you a brief report on which group policies have been applied to the machine. gpresult /h C:\somefolder\somefile.html will generate a more comprehensive HTML report you can open in your web browser to view.
0
 

Author Comment

by:jhuntin
ID: 39985081
Ok I checked them and everything is correct but it still requires complex password I have attached screen shots.
grp-policy.PNG
grp-settings.PNG
0
 
LVL 7

Expert Comment

by:Delete
ID: 39985110
Which GPO are you looking at for the grp-settings.png screenshot?  Is it the Default Domain Controllers policy or the Default Domain Policy?

Have you validated that the settings are disabled in both places?

Can you run rsop.msc from a command prompt to see which GPO is setting that configuration?
0
 

Author Comment

by:jhuntin
ID: 40000775
Ok ran command this is what comes up and the password complex is disabled but we still cant set any password its still want complexity.
grp-settings.PNG
0
 
LVL 55

Expert Comment

by:McKnife
ID: 40000825
Please open up the local policy at each DC using gpedit.msc and look at the same place.
0

Featured Post

Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

MS Outlook is a world-class email client application that is mainly used for e-communication globally.  In this article, we will discuss the basic idea about MS Outlook, its advanced features, and types of MS Outlook File formats.
In-place Upgrading Dirsync to Azure AD Connect
Windows 8 came with a dramatically different user interface known as Metro. Notably missing from that interface was a Start button and Start Menu. Microsoft responded to negative user feedback of the Metro interface, bringing back the Start button a…
A short tutorial showing how to set up an email signature in Outlook on the Web (previously known as OWA). For free email signatures designs, visit https://www.mail-signatures.com/articles/signature-templates/?sts=6651 If you want to manage em…

724 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question