September 2017
Intermediate to advanced
314 pages
8h 5m
English
If an attacker attempts to guess the password of a local administrative account, the lockout policy will slow down their attempts by enforcing further restrictions on the number of attempts that can be made in a set time period. This, combined with the increased complexity of the password, should make it very difficult for a successful attack to take place before the account password expires.
The default values are shown in the following screenshot:

You should configure this policy to be more restrictive than the defaults that are set. This table provides some recommendations for each of the values:
|
Policy |
Recommended ... |
Read now
Unlock full access