Hi,
For designing AD,which of group policies force us to have more than one domain?(for example when we want to have two password policy we should have two domain)
Could you please help me?
Thank you.
----
Regards
Mahnaz
Software/Hardware used:
ASKED:
July 16, 2006 2:34 PM
UPDATED:
July 17, 2006 9:45 AM
The ones that I am aware of are:
1. under Security Settings – Domain Policies – Security Options:
- Accounts: Administrator account status
- Accounts: Guest account status
- Accounts: Rename administrator account
- Accounts: Rename guest account
- Network Security: Force logoff when logon hours expire
2. under Security Setting – Account Policies:
- all of them!
Hello,
If you are implementing GP for a forest (2 or more domains), you have the option to apply policy at the forest root level which then flows down to all domains, or on a domain by domain (individual) basis.
If your goal is to have a unique password policy for each domain, then apply your policy on a per domain level either by editing the default domain policy or creating a custom policy containing the appropriate settings.
Good luck!