1. Home
  2. Computing & Technology
  3. Internet / Network Security

Password Policy: Maximum Password Age
Configuring Vista Password Policy Settings

From Tony Bradley, CISSP-ISSAP, for About.com

Maximum Password Age defines the maximum period of time (in days) that a password can be used before the user must change it. You can set passwords to expire between 1 and 999 days. If you a set a Maximum Password Age of 0 (zero), passwords never expire.

Unless the Maximum Password Age is set to 0 (zero), or no expiration, the Maximum Password Age setting must be higher than the Minimum Password Age setting. When the Maximum Password Age is set to never expire, the Minimum Password Age can be any value between 0 and 998 days.

Note: It is considered a recommended security practice to have passwords expire every 30 to 90 days, depending on the level of security or confidentiality in your environment. Requiring periodic password resets limits the window of opportunity an attacker might be able to exploit a compromised password.

Default: 42.

More Internet / Network Security Quick Tips
Explore Internet / Network Security
About.com Special Features

Stay connected and entertained with reviews on tips on the latest HDTVs, cellphones and more. More >

Easy ways to connect two computers for networking purposes. More >

  1. Home
  2. Computing & Technology
  3. Internet / Network Security
  4. Basic Security
  5. Secure Your Windows PC
  6. Maximum Password Age: Explanation of Windows Policy Setting 'Maximum Password Age'

©2009 About.com, a part of The New York Times Company.

All rights reserved.