Re: Local Administrator Account



It isn't an issue, it is by design and it isn't going to change.

Use different passwords on the accounts if you don't want the admin on one machine to access resources on another machine. It is bad security practice to use identical passwords on multiple accounts anyway.


--
Joe Richards Microsoft MVP Windows Server Directory Services
Author of O'Reilly Active Directory Third Edition
www.joeware.net


---O'Reilly Active Directory Third Edition now available---

http://www.joeware.net/win/ad3e.htm


John wrote:
I have a Windows 2003 Active Directory environment. I have XP workstations and member servers with the local administrator account password set the same. I logged into the XP workstation as the local administrator. Then I was able to access all the administrative shares of the other workstations and member servers that have the same password. I would be able to unc path to \\server\c$ without a domain authenication prompt. I remember this was an issue in the NT domain days when you could log on to other domains with if the administrator account and passwords were the same. I checked another Windows 2003 AD as well as a 2000 AD and it still happened. Any ideas why and how to stop it?
.



Relevant Pages

  • Re: password expiration policy for admin and system accounts ?
    ... policy that Admins manually reset these important account passwords every ... You can still have the passwords set to never expire, ... > Privileged accounts should be the most, not the least, well guarded. ...
    (microsoft.public.security)
  • Re: password expiration policy for admin and system accounts ?
    ... policy that Admins manually reset these important account passwords every ... You can still have the passwords set to never expire, ... > Privileged accounts should be the most, not the least, well guarded. ...
    (microsoft.public.win2000.security)
  • RE: Security Logging - Passwords & Accounts
    ... Security Logging - Passwords & Accounts ... Does anybody know of any way to log changes to user & group accounts and ...
    (RedHat)
  • Antivirus programs for XP - best ones?
    ... DON'T create user accounts during setup as they will become ... Turn of transmission of passwords and user credentials in clear ... Keep your system and ALL installed applications uptodate (Microsoft ...
    (alt.computer.security)
  • Re: Trillian Ver 3.1 saves passwords in plain Text
    ... >Cc: Suramya Tomar ... When you choose the option to check your yahoo email from Trillian ... I have a YIM, ICQ, AIM and several Jabber accounts. ... >trace of any of my passwords in any file in this directory. ...
    (Bugtraq)