Symantec IGA

  • 1.  Different password policies for different endpoints

    Posted Sep 18, 2017 04:55 AM

    Hello,

     

    Just a quick question, is it possible to define different password policies for different endpoints?

     

    And please, feel free to move this question to a better place if needed.

     

    Regards,

    Eric



  • 2.  Re: Different password policies for different endpoints
    Best Answer

    Broadcom Employee
    Posted Sep 18, 2017 07:47 AM

    It is usually not a good idea to have different password policies on different endpoints, especially when synced to IM.

    It's is far too easy to fail on the striker endpoint policy and then get locked out on a different endpoint due to too many password changes….

     

    I would recommend one (or both) of the following:

     

    1. Find the most common denominator and use it across the board.
    2. Set one location as the place to change the password (such as AD) and disable password changes on all other endpoint.

     

    Gil