|
it
newsgroups
|
|||||||||||||||||||||||
|
|||||||||||||||||||||||
Group policyI have a domain-level group policy object that specifies password policy
and account lockout policy. Each and every setting in those policies is configured. However, only the password policy is actually being applied to the workstations. When I use the Resultant Set of Policies mmc snap-in, it shows "not configured" for the account lockout policy items. Any idea what could be causing this? You should use Default Domain Policy to configure account lockout and
password policies. Note that there can be only one such policy per domain. -- Show quoteHide quoteArek Iskra MVP for Windows Server - Software Distribution "Sumner Paine" <sumn***@comcast.net> wrote in message news:3a8n8vF64guocU2@individual.net... >I have a domain-level group policy object that specifies password policy >and account lockout policy. Each and every setting in those policies is >configured. > > However, only the password policy is actually being applied to the > workstations. When I use the Resultant Set of Policies mmc snap-in, it > shows "not configured" for the account lockout policy items. > > Any idea what could be causing this? Arek Iskra [MVP] wrote:
> You should use Default Domain Policy to configure account lockout and This policy object was the Default Domain Policy, but renamed to > password policies. Note that there can be only one such policy per domain. > something else. There is only one policy object on the domain that specifies these settings. Should I delete the GPO and recreate it? Are there any other ways to troubleshoot this? Of course, deleting and recreating is always an option :)
Have you tried GPMC? http://www.microsoft.com/windowsserver2003/gpmc/default.mspx -- Show quoteHide quoteArek Iskra MVP for Windows Server - Software Distribution "Sumner Paine" <sumn***@comcast.net> wrote in message news:4240634F.9010705@comcast.net... > Arek Iskra [MVP] wrote: >> You should use Default Domain Policy to configure account lockout and >> password policies. Note that there can be only one such policy per >> domain. >> > > This policy object was the Default Domain Policy, but renamed to something > else. There is only one policy object on the domain that specifies these > settings. > > Should I delete the GPO and recreate it? Are there any other ways to > troubleshoot this?
Task scheduling : error 0x80070005: Access denied
4 patches won't install - 835732, 840987, 828035, 824105 anti virus event ID GPO Error (Event ID: 1508 & 1030) basic lack of understanding (mine) Giving Task Scheduler Rights to Non-Admin User Get support from MS for only 1 issue Web server Public Ip teminal services and group policy restrcitions |
|||||||||||||||||||||||