Domain Controller Local Policies


dear experts,

due come security concerns, have been tasked security harden our windows 2008 r2 domain controllers. such, have few qs need advice on. have 2 dcs replicating 1 another.

1) intending apply security hardening on 1 dc local policy start. changing local policy ( password, account, audit, uac, security options, user rights assignment) etc affect default domain controller policy ?

2) making changes on dc local policy affect other dc ? need redundancy in case.

3) there conflict if set local dc policy , overidden default domain controller policy ?

4) impact on other member servers, clients arre authenticated 2 dcs ?

pls advise. much.

we need change password policy , account policy too >>> said default domain policy control these.

what ? >>> maybe should check fine-grained password policy (but should test dc's,i'm not sure works or not)

ad ds fine-grained password , account lockout policy step-by-step guide

https://technet.microsoft.com/en-us/library/cc770842%28v=ws.10%29.aspx?f=255&mspperror=-2147217396


this posting provided no warranties or guarantees,and confers no rights. best regards burak uğur



Windows Server  >  Directory Services



Comments

Popular posts from this blog

Motherboard replacement

Cannot create Full Text Search catalog after upgrading to V12 - Database is not fully started up or it is not in an ONLINE state

Remote Desktop App - Error 0x207 or 0x607