How Can We Help?

Enabling Strong Password Support in Windows

You are here:
< Back
Enabling Strong Password Support in Windows
Last Updated: 23 Sep 2004
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

*** PLEASE NOTE: Link(s), If Provided, May Be Wrapped ***


Here are the instructions for enabling strong password
support in Windows NT and later. In Windows Server 2003,
strong passwords are enabled by default.

Both Windows 2000 and Server 2003, Strong Password support
is controlled via Local or Group Policy.


PASSFILT

• http://support.microsoft.com/?KBID=225230http://support.microsoft.com/?KBID=161990http://support.microsoft.com/?KBID=151082http://msdn.microsoft.com/library/en-us/security/Security/passfiltdll.asphttp://msdn.microsoft.com/library/en-us/security/security/password_filter_programming_considerations.asphttp://www.winnetmag.com/windowsnt20002003faq/Article/ArticleID/14766/windowsnt20002003faq_14766.htmlhttp://www.jsiinc.com/SUBA/TIP0000/rh0081.htm


PASSPROP

• http://www.microsoft.com/TechNet/winnt/winntas/tips/platinum/ptespass.asphttp://www.jsiinc.com/SUBE/TIP2000/rh2077.htm


3RD PARTY UTILS

• Password Bouncer ....... http://www.avatier.com/products/passwordbouncer/
• Pwd Policy Enforcer .... http://www.tpis.com.au/products/ppe/


PASSWORD COMPLEXITY REQUIREMENTS

• http://www.microsoft.com/technet/prodtechnol/windowsserver2003/proddocs/standard/504.asphttp://www.microsoft.com/technet/prodtechnol/windowsserver2003/technologies/security/bpactlck.mspx


GUIDELINES

• http://www.microsoft.com/technet/prodtechnol/windowsserver2003/technologies/security/bpactlck.mspxhttp://www.microsoft.com/ntworkstation/technicalresources/PWDguidelines.asphttp://sysopt.earthweb.com/articles/win2kpass/http://web.mit.edu/is/pubs/rp-07/http://support.microsoft.com/?KBID=299656


WHY PASSWORDS ARE IMPORTANT

• http://www.winnetmag.com/WindowsSecurity/Article/ArticleID/37438/37438.htmlhttp://www.cdc.state.ca.us/ISU/art-passwords-are-important.htmhttp://geodsoft.com/howto/password/http://support.microsoft.com/servicedesks/webcasts/en/wc022703/WC022703.ppthttp://labmice.techtarget.com/windows2000/Administration/password.htmhttp://www.csystem.net/password.htm


PERSONAL NOTES

• The NET USER command supports a /RANDOM parameter which
  will generate a random complex password. If you use the
  paramater as /RANDOM:xx it will generate a password of
  the length represented by XX.

• Good password policy should be just one part of an
  overall comprehensive network security strategy.

• Strong passwords are enabled automatically in
  Windows Server 2003.