Installing, Configuring and Administering the Kerberos Server V 2.0 on HP-UX 11i

Administration
Password Policy File
Chapter 6102
If you modify the MaxfailAuthCnt parameter, you must copy the
password policy file to the secondary security server and then restart the
kdcd on both the secondary and primary secondary servers.
NOTE MaxFailAuthCnt is the only parameter that the secondary servers read
in the password policy file.
If you edit the password policy file on the primary server, the file must be
copied to each secondary server, so that all the servers have an updated
version of this file.
For more information on the Password policy file, refer to
password.policy (4) manpage.
*.Expiration None
*.MinimumAge None
*.NotifyTime 7d
*.Dictionaries None
*.MaxFailAuthCnt 10
*.NoReqChangePwd 0
*.MaximumHistory 1
Table 6-2 Default Password Policy Settings for the base group (Continued)
Password Policy setting Default