← Back Published on

Securing administrative accounts on Windows Server

I focused on securing administrative accounts in this activity

Within Windows Active Directory I made a new organizational unit for IT Admins

And created a user account

Now I changed the entire group policy for the default domain. This affects all users and groups with this account

I did this for added security, and was accomplished by editing the minimum password length, complexity, password ages, and password history, along with disabling reversible encryption to prevent passwords from being decrypted.

Once the edits have been made to this group and domain, I exported the information into an html file for documentation.

As a Security Admin, I would then confirm all users on the account are informed of the changes to the security procedures and that if any questions arise, or password complexity is not met that i am available for assistance.