Password Security – Strong Password Requirements for a Group of Users


Is it possible to assign strong requirement to a Active Directory domain group? In this case, the strong password would be 8 charters or longer, with at least one capital letter, one lower and one number. They also would need to change their password every 30 days.

Users outside of this group would have another password policy that isn't as tight.

We have an 2003 Active Directory domain.

Thank You for your help.

Best Answer

You get one password policy in a domain in Active Directory with Windows Server 2003. You'll have to make a child domain for the users who need a different password policy, or upgrade to Windows Server 2008.

Have a look here:

This has been a weakness of Active Directory for a long time, but it's only remidied in W2K8.