Domain security policy in windows server 2003?

Answer:
In Server 2003 domian security policy helps you to set Password Protection..

1)Password length

2)Password Complexity

3)Password Age (min age & max age)

In Server 2003 domian security policy helps you to set Password Protection..

1)Password length

2)Password Complexity

3)Password Age (min age & max age)

Default and Recommended Password Policy Settings
===============================================

Policy Default Recommended Comments
Enforce password history
24 passwords remembered
(No change)

Prevents users from reusing passwords.

Maximum password age
42 days
(No change)
N/A

Minimum password age
1 day
(No change)
Prevents users from cycling through their password history to reuse passwords.

Minimum password length
7 characters
(No change)
Sets minimum password length.

Password must meet complexity requirements
Enabled
(No change)
For the definition of a complex password, see "Creating a Strong Administrator Password" in the Establishing Secure Domain Controller Build Practices section.

Store password using reversible encryption
Disabled
(No change)
N/A

Default and Recommended Account Lockout Policy Settings
======================================================

Policy Default Recommended Reason
Account lockout duration
Not defined
0 minutes
The value 0 means that after account lockout an Administrator is required to reenable the account before account lockout reset has expired.

Account lockout threshold
0 invalid logon attempts
20 invalid logon attempts
The value 0 means that failed password tries never cause account lockout.

Because an account lockout duration of 0 minutes (administrator reset) is recommended, a small number for this setting can result in frequent administrator interventions.

Reset account lockout counter after
Not defined
30 minutes
This setting protects against a sustained dictionary attack by imposing a nontrivial delay after 20 unsuccessful attempts.

Default and Recommended Kerberos Policy Settings
================================================

Policy Default Recommended Comments
Enforce user logon restrictions
Enabled
(No change)
N/A

Maximum lifetime for service ticket
600 minutes
(No change)
N/A

Maximum lifetime for user ticket
10 hours
(No change)
N/A

Maximum lifetime for user ticket renewal
7 days
(No change)
N/A

Maximum tolerance for computer clock synchronization
5 minutes
(No change)
Maximum tolerance between the client's and server's clocks.



Note: If you want to more information so you can visit http://www.iyogibusiness.com/

First answer by ID2080151060. Last edit by Samanderson1234. Contributor trust: 47 Question popularity: 4 [recommend question].