Account Lockout

From: Nir B (nir@icomverse.com)
Date: 01/23/03


From: "Nir B" <nir@icomverse.com>
Date: Thu, 23 Jan 2003 08:13:01 +0200


Hi All,

I did migration for the users from my NT4 domain to my new AD domain using
Microsoft ADMT, so the users on the AD include the SID history of the users
from the NT4 domain.

I changed the account policies of my NT4 from "No account Lockout" to
"Account Lockout" (Lockout after 5 bad logon attempts) and a lot of users
locked out even if they didn't tried to logon..

Any ideas?

Thanks In Advanced!

Nir



Relevant Pages

  • RE: Limit number of Logon attempts
    ... I understand that you want to adjust the logon attempts through Group ... we have an Account Lockout policy ...
    (microsoft.public.windows.server.sbs)
  • Re: Security Event Log missing entries
    ... There is a difference between account logon and logon events. ... --- good MS white paper on account lockout policy. ...
    (microsoft.public.win2000.security)
  • Authentication ?
    ... I have a web server that is part of our NT4 domain. ... local isur_xxxxxx account to logon with "allow IIS to manage account" ... When users that do not logon to the domain go to the website ...
    (microsoft.public.inetserver.iis.security)
  • Re: Accounts lockout policy not working as expected
    ... gets a successful logon after the 15 minutes have passed. ... period has passed AD will treat the account as unlocked. ... to logon successfully without an administrator unlocking the account? ... >> Account Lockout Threshold: 5 bad logon attempts ...
    (microsoft.public.windows.group_policy)
  • Re: IIS5 Integrated Windows Authentication prompts password
    ... Set your "Reset account lockout counter after" to 5 minute ... > Start auditing for failed logon attempts. ... >: Event Type: Failure Audit ...
    (microsoft.public.inetserver.iis.security)