Skip to main content

Hello Community!

 

We are facing with a "problem" with expiring local administrator account password.

From security reasons we have set Maximum Passcode Age option to 180 days, but local administrator account is under this policy too.

We are not using any SSO accounts.

How can we exclude this account from this policy?

Rather than exclude it, you should secure the account by making it automatically scramble to a random password every so often.  Here is an easy to implement solution for macOS 10.14 and above.

https://github.com/joshua-d-miller/macOSLAPS