My Win2K single domain is set to expire passwords every 180 days, 6
characters, password complexity not enabled.

I would like to allow members of the Domain Admins group to input at least 9
character passwords (enable complexity) and change passwords every 90 days.
The change password age is easy to script and force to change as often as I
wish.

I am wondering if there is any tool out there that allows me to enforce
stronger password requirements for selected groups ? (Password policy is
enforced at domain level, and I can't enforce stronger ones at this point).

Re: Enforce stronger password policy for administrator by Miha

Miha
Mon Aug 30 04:58:16 CDT 2004

Hi Marlon,

What you can do is perform password auditing using tools such as L0phtCrack
or
http://lasecwww.epfl.ch/~oechslin/projects/ophcrack/ (scroll down to where
hash window is).

Mike

"Marlon Brown" <marlon_brown@hotmail.com> wrote in message
news:O44x1D4iEHA.536@TK2MSFTNGP11.phx.gbl...
> My Win2K single domain is set to expire passwords every 180 days, 6
> characters, password complexity not enabled.
>
> I would like to allow members of the Domain Admins group to input at least
9
> character passwords (enable complexity) and change passwords every 90
days.
> The change password age is easy to script and force to change as often as
I
> wish.
>
> I am wondering if there is any tool out there that allows me to enforce
> stronger password requirements for selected groups ? (Password policy is
> enforced at domain level, and I can't enforce stronger ones at this
point).
>
>