Samba + LDAP enforcing a password policy

Discussion in 'Server Operation' started by wildgoosed, Apr 17, 2008.

    Hey everyone,

    I followed the openldap-samba-domain-controller guide that was just posted recently and now have a fully functional test server setup.

    I was hoping to somehow setup and enforce a strong security policy and I am kinda confused on where I should begin and what to configure :S

    My Password Policy Goals
    8 characters in length
    no dictionary based words
    password history of 3
    passwords must be changed monthly

    Now, would this be achievable by configuring PAM restrictions? Or is this configured somewhere else, possibly inside LDAP ?
    Has no one had to do this in the past?
    I'm sorry, but I'm no LDAP expert...

