The advice from the Windows 2003 Deployment Kit is to edit the default domain policy only with the policies that must be defined at domain level, like account policies, Kerberos policies etc. For any of the other policies, create a new GPO at domain level.


From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Christine Allen
Sent: 15 December 2004 16:52
To: '[EMAIL PROTECTED]'
Subject: [ActiveDir] Default Domain Policy

Hello,
 
Quick question.  If I want to implement a password policy for my domain, do I have to use the default domain policy?  Or can I add my own newly created policy at the domain level and modify that with my password requirements?  The reason I ask, is because of the don't use the default domain policy debate that went on about a month ago.
 
TIA

-Christine

Christine N. Allen
Citrix/Windows 2000 Engineer
BMC Healthnet Plan
One Design Center Place
Boston, MA 02210

Work:  617-748-6034
Cell:  617-290-4407
 

 

Reply via email to