cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
408
Views
10
Helpful
2
Replies

AD Password Policy for AD Service Accounts

Brian Alvara
Level 1
Level 1

Hello,

Do any other organizations follow their standard password policy around AD service accounts? Curious to know if other's are following a 60/90 day password change policy that includes service accounts and any implications that have been discovered. Thanks

2 Replies 2

Chintan Gajjar
Level 8
Level 8

in my experience with some of the setup, we have prevent the general Group policies to be applied to ICM OU which also includes Service Accounts.

In case you decide to do that, you have to make sure you reset the password from Service Account Manager before it expires. if reset from sources other than SAM, SAM can not detect the changed password.

Hope you also consider the other aspect like Cisco Finesse Login to the AWDB and supervisors ability to login to Cisco web admin, because that also relies on AD authentication.

This is going to cause a ton of trouble, a single mistake and you could have a complete call center down. What one customer did after weeks of battling was that a single person went through all service accounts and set the password to something only he knew.

david

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: