Fine-grained password policies have the following limitations:
- Fine-grained password policies can only be applied to users and global security groups. They can't be applied to OUs.
- By default, only Domain Admins/Enterprise Admins can set up/manage/delete fine-grained password policies. It is possible to delegate permission to other users if required.
- The minimum domain functional level is Windows Server 2008.