專案資訊 #1072
進行中專案資訊 #1064: 2025-PenTest
Privileged Accounts with Never Expiring Passwords
100%
概述
N bookmark20230424152553354013409667 "Privileged Accounts with Never Expiring Passwords
" Accounts with passwords unchanged for a long time increase the probability of its exposure, reuse or weakness. This allows a malicious individual to retain their access rights to the domain in the long term. "In order to make Active Directory enforce periodic password change, accounts must not have the ""Password never expires"" flag set in the ""Account"" tab of the user properties. Their passwords should then be rolled immediately.
For services accounts, Windows provides the ""managed service accounts"" and ""group managed service accounts"" features to facilitate the automatic change of passwords.
"
檔案
是由 益利 周 於 約 2 個月 前更新
- 檔案 clipboard-202511271655-0srip.png clipboard-202511271655-0srip.png 已新增
- 狀態 從 New-新增 變更為 Resolved-解决
- 完成百分比 從 0 變更為 100
修改AD帳號屬性,取消 永不過期 帳號