Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

tools to change automaticly local administrator password on all server and computer in my active directory domain

Posted on 2015-02-23
4
Medium Priority
?
62 Views
Last Modified: 2015-06-02
hello,

i need a tools to change automaticly local administrator for all windows servers and windows 7 computer every 6 month.

i have test GPO but its not secure.

thanks for help
0
Comment
Question by:cawasaki
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
4 Comments
 
LVL 30

Accepted Solution

by:
Rich Weissler earned 2000 total points
ID: 40625693
I attended a week of GCWN training last summer, and the instructor demonstrated a secure solution to this problem using powershell.  The complete solution is posted on his blog.
0
 
LVL 56

Expert Comment

by:McKnife
ID: 40626916
It is not the best idea to activate that account, security-wise. And when it's deactivated, the password may be empty, it simply does not matter. I would not recommend doing anything with that account, including password changing.
0
 
LVL 30

Expert Comment

by:Rich Weissler
ID: 40807988
Additional information because it came up recently  -- Microsoft "Local Administrator Password Solution" (LAPS) was recently released as version 6, and changes the local admin password more frequently, and stores the information in a protected location in the directory.
0
 
LVL 56

Expert Comment

by:McKnife
ID: 40808021
In my article http://www.experts-exchange.com/articles/18180/A-concept-for-safe-user-support.html I outline a concept superior to LAPS, suitable for end user support.
0

Featured Post

Keep up with what's happening at Experts Exchange!

Sign up to receive Decoded, a new monthly digest with product updates, feature release info, continuing education opportunities, and more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to deal with a specific error when using the Enable-RemoteMailbox cmdlet to create a mailbox in the cloud-based service, for an existing user in an on-premises Active Directory.
It’s time for spooky stories and consuming way too much sugar, including the many treats we’ve whipped for you in the world of tech. Check it out!
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…
Suggested Courses

610 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question