Solved

Server 2013 password complexity

Posted on 2014-04-07
5
212 Views
Last Modified: 2014-07-22
I have change local security settings and GPO settings we have rebooted several times but our DC is still requiring complex passwords for users in AD, any ideas on how to resolve this we do not wish to use complex passwords.
0
Comment
Question by:jhuntin
5 Comments
 
LVL 31

Accepted Solution

by:
Frosty555 earned 500 total points
ID: 39984822
Look at your resulting set of policies and gpresult. Most likely you did not change the correct GPO, or something is overriding it. Or, the GPO hasn't updated on the server yet. For password complexity of domain users, you should not need to make any changes to local security policy, it will be a GPO change only.

Resulting Set of Policies - allows you to see what the resulting policies were that have been applied to the machine. For each policy, you can see which GPO was responsible for setting it.

Start->run->rsop.msc, and navigate to the password complexity policy.

Also, open a command prompt window and run gpresult /r, this will show you a brief report on which group policies have been applied to the machine. gpresult /h C:\somefolder\somefile.html will generate a more comprehensive HTML report you can open in your web browser to view.
0
 

Author Comment

by:jhuntin
ID: 39985081
Ok I checked them and everything is correct but it still requires complex password I have attached screen shots.
grp-policy.PNG
grp-settings.PNG
0
 
LVL 7

Expert Comment

by:Delete
ID: 39985110
Which GPO are you looking at for the grp-settings.png screenshot?  Is it the Default Domain Controllers policy or the Default Domain Policy?

Have you validated that the settings are disabled in both places?

Can you run rsop.msc from a command prompt to see which GPO is setting that configuration?
0
 

Author Comment

by:jhuntin
ID: 40000775
Ok ran command this is what comes up and the password complex is disabled but we still cant set any password its still want complexity.
grp-settings.PNG
0
 
LVL 54

Expert Comment

by:McKnife
ID: 40000825
Please open up the local policy at each DC using gpedit.msc and look at the same place.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Lotus Notes – formerly IBM Notes – is an email client application, while IBM Domino (earlier Lotus Domino) is an email server. The client possesses a set of features that are even more advanced as compared to that of Outlook. Likewise, IBM Domino is…
Disabling the Directory Sync Service Account in Office 365 will stop directory synchronization from working.
In this video we show how to create an Accepted Domain in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Mail Flow >> Ac…
In this video we show how to create a mailbox database in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Servers >> Data…

809 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question