Store passwords using reversible encryption

G

Guest

Hi... does the "Store passwords using reversible encryption" option in the account policy of Windows 2000 and 2003 only apply if the server runs Active Directory, or would it take effect on any server (not necessarily running AD)

Thanks in advance! Hoping this is an easy question
 
S

S.J.Haribabu

Hi,

The intent of this policy is to provide support for applications which use
protocols that require knowledge of the user password for authentication
purposes. Storing passwords using reversible encryption is essentially the
same as storing clear-text versions of the passwords. For this reason, this
policy should never be enabled unless application requirements outweigh the
need to protect password information.

If the policy wants to be applied on domain level you need AD.
It can be enabled using local security policy (gpedit.msc) on all the
machines where in AD is not required.

Thanks,

(e-mail address removed)

This posting is provided "AS IS" with no warranties, and confers no rights.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top