Update maximum-password-age.md

This commit is contained in:
MaratMussabekov 2020-10-22 10:47:19 +05:00 committed by GitHub
parent 0cb02cfccf
commit e693186d6e
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -39,6 +39,9 @@ The **Maximum password age** policy setting determines the period of time (in da
Set **Maximum password age** to a value between 30 and 90 days, depending on your environment. This way, an attacker has a limited amount of time in which to compromise a user's password and have access to your network resources. Set **Maximum password age** to a value between 30 and 90 days, depending on your environment. This way, an attacker has a limited amount of time in which to compromise a user's password and have access to your network resources.
> [!NOTE]
> Security baseline recommended by Microsoft doesn't contain the password-expiration policy, as this mitigation is less effective than modern ones. However, companies that didn't implement Azure AD Password Protection, multifactor authentication or other modern mitigations of password-guessing attacks, should leave this policy effective.
### Location ### Location
**Computer Configuration\\Windows Settings\\Security Settings\\Account Policies\\Password Policy** **Computer Configuration\\Windows Settings\\Security Settings\\Account Policies\\Password Policy**