Everything I have read so far suggests that cached credentials do not
expire until the password needs to be changed (domain policy).  At that
time a connection to the domain is required.

This link provides a bit more information

http://www.experts-exchange.com/Operating_Systems/WinXP/Q_20958875.html

Regards;

James R. Day
National Parks Service - AD Core Team
(202) 354-1464
Fax (202) 371-1549
[EMAIL PROTECTED]


|---------+---------------------------------->
|         |           [EMAIL PROTECTED]   |
|         |           Sent by:               |
|         |           [EMAIL PROTECTED]|
|         |           tivedir.org            |
|         |                                  |
|         |                                  |
|         |           05/05/2004 11:46 AM AST|
|         |           Please respond to      |
|         |           ActiveDir              |
|---------+---------------------------------->
  
>------------------------------------------------------------------------------------------------------------------------------|
  |                                                                                    
                                          |
  |       To:       [EMAIL PROTECTED]                                                  
                               |
  |       cc:       (bcc: James Day/Contractor/NPS)                                    
                                          |
  |       Subject:  [ActiveDir] Cached Domain Credential logon expiry for Win2k/XP     
                                          |
  
>------------------------------------------------------------------------------------------------------------------------------|




Does anyone know how long cached credentials for domain logons are valid on
Win2K/XP machines?  Is there even an expiry date?  A concern was raised by
our desktop OS group that cached credentials for domain logons may expire
for laptop users who spend considerable time away from the office, leaving
them unable to access the workstation.  In My life as a road warrior, I
never had this happen to me, but I was never way from a network connection
(VPN or otherwise) for more than 2 weeks.


I have been searching for a definitive answer in terms of a KB article or
some other "authoritative source" ( I guess my trust me response was not
authoritative enough), but have been unable to find one.






David Frost
Directory Engineering,
Messaging, Directories and PKI Engineering Services
Industry Canada






List info   : http://www.activedir.org/mail_list.htm
List FAQ    : http://www.activedir.org/list_faq.htm
List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/

Reply via email to