Hi i am wanting to implement a Granular Password policy in my domain. I have dev’ed it all in our 2008 R2 test environment, which works fine but when i try and set it up on our actually 2008 domain it won’t apply the policy to users in groups.
The msDS-PasswordSetting class is applied to a group, from the groups attribute editor it confirms that the class is applied to it but a user in that group will not inherit the password class. It will work if i assign the password class straight to the user, but with 300+ users i would obviously prefer to use groups.
The only thing that is different is that one is at 2008 R2 functional level and the other is 2008.
Am i missing somthing?
JC
The msDS-PasswordSetting class is applied to a group, from the groups attribute editor it confirms that the class is applied to it but a user in that group will not inherit the password class. It will work if i assign the password class straight to the user, but with 300+ users i would obviously prefer to use groups.
The only thing that is different is that one is at 2008 R2 functional level and the other is 2008.
Am i missing somthing?
JC