Hello. Please let me know if I should be posting this in the Windows 2000 Server forum instead.
I need to set up two password policies for one domain. A group has been created for the users that are supposed to be 'governed' by the password policy. I have figured out how to configure a password policy for the entire domain but I can't seem to get it to apply to one group of users only. It seems to be either all or none.
When I go to the properties of my new GPO I can set who the policy applies to. I add my group and under the 'Apply Group Policy' I check off 'Allow'. I have tried selecting 'Deny' for the Authenticated Users group as well as not selecting anything and even removing Authenticated Users from the listing. The policy is still not applied to the group I added. If I select 'Allow' to apply the policy for the Authenticated Users it applies it to everyone. I'm assuming all users are covered under 'Authenticated Users' so should I delete this entry from the security list or leave it as 'Deny' the application of the policy?
I have moved the Password Policy to the top of the list of policies.
How do I apply this password policy to the group of users only and not all users on the domain?
Thanks.
DTK
I need to set up two password policies for one domain. A group has been created for the users that are supposed to be 'governed' by the password policy. I have figured out how to configure a password policy for the entire domain but I can't seem to get it to apply to one group of users only. It seems to be either all or none.
When I go to the properties of my new GPO I can set who the policy applies to. I add my group and under the 'Apply Group Policy' I check off 'Allow'. I have tried selecting 'Deny' for the Authenticated Users group as well as not selecting anything and even removing Authenticated Users from the listing. The policy is still not applied to the group I added. If I select 'Allow' to apply the policy for the Authenticated Users it applies it to everyone. I'm assuming all users are covered under 'Authenticated Users' so should I delete this entry from the security list or leave it as 'Deny' the application of the policy?
I have moved the Password Policy to the top of the list of policies.
How do I apply this password policy to the group of users only and not all users on the domain?
Thanks.
DTK