14.4 Managing Password Policy

Available only in the Windows console.

To ensure that console user and administrator accounts are protected against security attacks, Secure Configuration Manager provides an integrated password policy. Password policy is enabled by default and offers complex password rules that apply to all console user and administrator accounts that use console authentication. Password policy also supports password history and console lockout settings. You can modify the default policy settings to address your specific security needs. You can also reset your password policy to the default settings in Secure Configuration Manager.

Secure Configuration Manager applies an updated policy to passwords created or reset after you enable or modify the password policy. For example, Secure Configuration Manager applies the new password policy the next time a console administrator resets a password.

These rules apply to passwords set through Secure Configuration Manager, and do not replace or overwrite native password rules. If you implement external authentication, ensure that the authentication source applies complex password policy rules to account credentials stored in the external authentication directory.

To configure the password policy:

  1. In the console, click Console Permissions.

  2. In the navigation pane, right click Console Permissions, and then click Password Policy.

  3. (Optional) To return to the default settings, click Reset.

  4. Modify the settings and then click OK.