Re: User Accounts Keep Locking Out

From: Jean-Paul F. Otin (jpfo@mitre.org)
Date: 01/24/03


From: "Jean-Paul F. Otin" <jpfo@mitre.org>
Date: Fri, 24 Jan 2003 10:23:43 -0500


A point of clarification. The passprop utility seems to imply that administrator accounts CAN be looked out from
workstations and standalone servers (from both interactive and remote logins), but can NOT be locked out from
interactive logons on a domain controller (they can be locked out from remote logins).
jp

David Grant wrote:

> John
>
> Are you sure the accounts are being locked out, and that you havent set the
> passwords to expire after a certain time. By the way - the built in admin
> account cannot be locked out, and most password cracking tools can identify
> this account no matter what you name it.
>
> just a thought
>
> Dave
>
> "John" <john@mousehut.com> wrote in message
> news:c160e0ea.0301231433.5f023882@posting.google.com...
> > Hey All:
> >
> > Running a Win2k Web Server and am having a problem with all user
> > accounts being locked out every few weeks or so except the original
> > admin account (which was renamed).
> >
> > I am guessing there is some tool out there that can read the user
> > accounts on a machine and then is automatically trying to crack the
> > passwords. Of course, the machine is set to lock people out after 3
> > bad attempts so that's not getting to far and we enforce tough
> > passwords.
> >
> > So, my question is, is there any way to stop this? Can anything be
> > done or do I have to live with unlocking everyones account every few
> > weeks (hope not).
> >
> > Any help would be greatly appreciated.




Relevant Pages

  • Re: password expiration policy for admin and system accounts ?
    ... policy that Admins manually reset these important account passwords every ... You can still have the passwords set to never expire, ... > Privileged accounts should be the most, not the least, well guarded. ...
    (microsoft.public.security)
  • Re: password expiration policy for admin and system accounts ?
    ... policy that Admins manually reset these important account passwords every ... You can still have the passwords set to never expire, ... > Privileged accounts should be the most, not the least, well guarded. ...
    (microsoft.public.win2000.security)
  • RE: Security Logging - Passwords & Accounts
    ... Security Logging - Passwords & Accounts ... Does anybody know of any way to log changes to user & group accounts and ...
    (RedHat)
  • Antivirus programs for XP - best ones?
    ... DON'T create user accounts during setup as they will become ... Turn of transmission of passwords and user credentials in clear ... Keep your system and ALL installed applications uptodate (Microsoft ...
    (alt.computer.security)
  • Re: Trillian Ver 3.1 saves passwords in plain Text
    ... >Cc: Suramya Tomar ... When you choose the option to check your yahoo email from Trillian ... I have a YIM, ICQ, AIM and several Jabber accounts. ... >trace of any of my passwords in any file in this directory. ...
    (Bugtraq)