Domain Controller Local Policies
dear experts,
due come security concerns, have been tasked security harden our windows 2008 r2 domain controllers. such, have few qs need advice on. have 2 dcs replicating 1 another.
1) intending apply security hardening on 1 dc local policy start. changing local policy ( password, account, audit, uac, security options, user rights assignment) etc affect default domain controller policy ?
2) making changes on dc local policy affect other dc ? need redundancy in case.
3) there conflict if set local dc policy , overidden default domain controller policy ?
4) impact on other member servers, clients arre authenticated 2 dcs ?
pls advise. much.
we need change password policy , account policy too >>> said default domain policy control these.
what ? >>> maybe should check fine-grained password policy (but should test dc's,i'm not sure works or not)
ad ds fine-grained password , account lockout policy step-by-step guide
https://technet.microsoft.com/en-us/library/cc770842%28v=ws.10%29.aspx?f=255&mspperror=-2147217396
this posting provided no warranties or guarantees,and confers no rights. best regards burak uğur
Windows Server > Directory Services
Comments
Post a Comment