Password settings in UCS domain

Hi

I read article: How-to: Align Password Policies across Directory Services and I have situation 1. The most common environment is an UCS with Samba/AD (Samba4).

I have set up password politics but password for users doesn’t force to change.
How to properly set password settings for my domain?

There is something wrong in my UCS because, for example, my user:Administrator has set up password-no-expiry policies and it is linked and listed when I check net user Administrator /domain. But if I check this account via UCS (users->Administrator->Account) there is password expiry date for 30 days. My samba has no passswordsettings, I mean that command sudo samba-tool domain passwordsetting show returns just off and 0.

Thanks for help :wink:

BTW. Where can I check and list login, logoff, password change events in logs?

Thanks in advance
LK

Mastodon