Author Topic: Enforcing password complexity: where to start?  (Read 130 times)

basselope

  • Zen Monk
  • **
  • Posts: 59
  • Karma: +17/-0
    • View Profile
Enforcing password complexity: where to start?
« on: January 20, 2020, 12:26:30 pm »
Situation: mix of Windows 10 and Ubuntu clients with users and groups configured on a Zentyal domain (no Windows servers).

Should I use RSAT and Windows policies or samba passwordsettings?

The reason of my questions are described here -> https://serverfault.com/questions/780934/password-policy-in-active-directory-inactivation-of-complexity-without-effect
« Last Edit: January 20, 2020, 04:48:20 pm by basselope »

doncamilo

  • Zen Samurai
  • ****
  • Posts: 331
  • Karma: +68/-1
    • View Profile
Re: Enforcing password complexity: where to start?
« Reply #1 on: January 20, 2020, 07:33:03 pm »
 :)

I use ever samba-tool (however in samba 4.7 doesn't implement the "fine grain" features that offer the 4.9 version), but I know some people using GPOs.

Using GPOs solve your problem if your clients are Windows machines, but these policies will not apply to GNU/Linux flavors.

Further, this way, you will not need to care about the sysvol replicatión through rsync (if you have some more domain controllers).  XD

Cheers!
"That place... is strong with the
dark side of the Force.  A domain
of evil it is.  In you must go."

Yoda.