Active Directory

IOWA Domain Notes and Tips

  1. In order to enforce stronger domain user account passwords, simply select the "Member Of" tab within the desired end user's domain account, and then add them to the "PPE-ADMIN-CLAS" domain group. Note that to receive accurate information when an individual changes their password, the PPE client MUST be installed on the machine—otherwise they receive the default domain information regarding password lengths and complexity.

    PPE Complexity Criteria:
    —15 or more characters in length
    —Contains 2 alphabet characters: 1234567890`~! @#$%^&*()-_=+[{]}\|;:'",<.>/?
    —May not contain 4 continuous characters of last password
    —May not contain your full name or HawkID
    —May not be any of your last 10 passwords

  2. In order to exempt domain service accounts from the domain password expiration policy, simply select the "Member Of" tab within the desired domain service account, and then add them to the "OUAService-CLAS" domain group.
  3. If a problem arises when deleting a folder on the network storage space, try using DOS-based commands (Windows has a problem deleting some Macintosh system files). The commands to use are "DEL" and "RD" (enter "DEL /?" or "RD /?" for command-line switches).
  4. LDAP access has been disabled from off campus, in order to prevent malicious attempts to gain entry to the University of Iowa network.