Link to home
Start Free TrialLog in
Avatar of tmaususer
tmaususerFlag for United States of America

asked on

Conflicting Group Policies

Hello.  In our group policies we have several OU.  We have two OU in particular that we want the objects to have separate password lengths.  I made two fresh policies, and I changed the security settings for each. I made one policy with the long password and one with a short password.  In all of the remaining policies, I changed the security settings to Not Configured.  
When I linked the policies to the respective the OUs, the long password policy would override the other.  The only way to get the password with the short limit was to not link the policy for the long password to any OU.
Avatar of McKnife
McKnife
Flag of Germany image

You must use password settings objects (PSO), not standard password policies, since the latter cannot be applied to different OUs.
PSOs can be applied to groups of users. See an introduction here: https://www.tech-coffee.net/fine-grained-password-policy-active-directory/
ASKER CERTIFIED SOLUTION
Avatar of Hello There
Hello There

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of tmaususer

ASKER

Thank you both for your help. I think I got it to work.
Sometimes I wonder why point awarding goes as it goes :-)
yeah, i'm sorry
I wanted to give you both the highest but it only gives me the one option (that I know of)
You may select as many suggestions for an answer as you like. Afterwards you may use a slider to indicate what was most helpful (if any). Very easy - next time :-)
will do