Sunday, 4 September 2016

Maximum password age grayed out, cannot change password on windows server 2012 or 2016 domain controller.


Today I am writing about “how to modify Maximum password age on windows server domain controller”, we have faced this issue in our organization our DC password use to get expire on every 42 days that was the causing to restrict access the users, SharePoint sites, Project server site. In one word we can say everything was getting mess up. So we did Google and find the solution but as per the solution the option was grayed out where we can modify server password days or we can put never expire password.

Any way we found the solution and fixed the issue, now we are working without any issue occurring on the server.
Below are the steps by step solution with screen shots:
  • Logon to the server with administrator user name and password.
  • Click windows+ and enter gpmc.msc
  • Once we will hit enter, Group policy Management wizard will get open, see below:
  • Navigate the option to server, Group Policy Management> Forest: server Name> Domains>server Domain> and select Default Domain Policy. Here we will right click on the same and click on edit.
  • Once we will click on edit option, it will open Group policy Management editor, here we will select required option to do modify. See below for more:
  • Here we will select navigate to below option to do modify for Maximum password Age.
Computer Configuration>Policies>Windows settings> Security Policies>password Policy
  • Here we will select Maximum password age we will select and double click on that, now can find the option is enabled over here. Finally we reached to option where we can set out our issue.
  • Select the Maximum password age properties and under the tab security policy setting and modify as per our requirement.

NOTE: Here if we will select 0 Option, password will not expire.

Thanks, Hope this will help some one ☺

Saturday, 3 September 2016

How to Create New Organization Unit using Windows interface on Windows Server 2016- Step by Step with screenshots

In our previous article we have installed windows server 2016, installing and configuring Active directory, join a machine with Domain and etc.…
See below link for above articles:

In this Article, we will learn the about “How to create OU in Active directory on Windows Server 2016”. OU (Organization Unit) is type of container where we can store Users, Computers, Groups and OUs. It’s used for organization structure to keep easy everything.
Creating Organizational Unit (OU) in Active directory:

  • We need to open Active Directory users and Computers, click on start button and click on administrator tools or user DSA.MSC command.
  • Here select Domain server rom active directory users and computers and right click on the domain, Select New> Organization Unit. See below:
  • Click on that, it will new wizard called OU here we will assign Name and click on ok.
Note: Check protect container from accidental deletion, it will protect for accident delete we can remove later on also.
  • Now we can see on the domain page new OU is created called “LAB”.
Here we can create or move Computers, users Groups and OUs same as usual method.

Thanks ☺