Set password policy (with hybrid sync to M365 enabled)

Copper Contributor

Hi there,

 

We have an on-premise environment with the users synced to Azure AD (by using Azure AD Connect).

MFA+SSPR is configured and users are used to work with it.

 

Traditional, the AD password policy settings in the default domain policy have the following settings:

Enforce password history3 passwords remembered
Maximum password age0 days
Minimum password age0 days
Minimum password length6 characters
Password must meet complexity requirementsDisabled

 

The management wants to tighten the password policy by setting the following;

Enforce password history3 passwords remembered
Maximum password age60 days
Minimum password age0 days
Minimum password length10 characters
Password must meet complexity requirementsEnabled

 

When I change this setting now, I suppose everyone in the organization is forced to change their password immediately (because we change the maximum password age value from 0 to 60). 

 

Besides this; I would like to know your thoughts on this (2022 wise). Because M365 don't require to change passwords by default....

 

Thanks in advance!

0 Replies