1)Password length
2)Password Complexity
3)Password Age (min age & max age)
In Server 2003 domian security policy helps you to set Password Protection..
1)Password length
2)Password Complexity
3)Password Age (min age & max age)
Default and Recommended Password Policy Settings
===============================================
Policy Default Recommended Comments
Enforce password history
24 passwords remembered
(No change)
Prevents users from reusing passwords.
Maximum password age
42 days
(No change)
N/A
Minimum password age
1 day
(No change)
Prevents users from cycling through their password history to reuse passwords.
Minimum password length
7 characters
(No change)
Sets minimum password length.
Password must meet complexity requirements
Enabled
(No change)
For the definition of a complex password, see "Creating a Strong Administrator Password" in the Establishing Secure Domain Controller Build Practices section.
Store password using reversible encryption
Disabled
(No change)
N/A
Default and Recommended Account Lockout Policy Settings
======================================================
Policy Default Recommended Reason
Account lockout duration
Not defined
0 minutes
The value 0 means that after account lockout an Administrator is required to reenable the account before account lockout reset has expired.
Account lockout threshold
0 invalid logon attempts
20 invalid logon attempts
The value 0 means that failed password tries never cause account lockout.
Because an account lockout duration of 0 minutes (administrator reset) is recommended, a small number for this setting can result in frequent administrator interventions.
Reset account lockout counter after
Not defined
30 minutes
This setting protects against a sustained dictionary attack by imposing a nontrivial delay after 20 unsuccessful attempts.
Default and Recommended Kerberos Policy Settings
================================================
Policy Default Recommended Comments
Enforce user logon restrictions
Enabled
(No change)
N/A
Maximum lifetime for service ticket
600 minutes
(No change)
N/A
Maximum lifetime for user ticket
10 hours
(No change)
N/A
Maximum lifetime for user ticket renewal
7 days
(No change)
N/A
Maximum tolerance for computer clock synchronization
5 minutes
(No change)
Maximum tolerance between the client's and server's clocks.
Note: If you want to more information so you can visit http://www.iyogibusiness.com/