Files
IntunePolicies/Enforce_password_age_history.tf
2025-02-04 19:23:56 +10:00

34 lines
1.0 KiB
HCL

resource "microsoft365wp_device_management_configuration_policy" "password_history" {
name = "Enforce password age & history"
settings = [
{ instance = {
definition_id = "device_vendor_msft_policy_config_devicelock_devicepasswordenabled"
choice = {
value = {
value = "device_vendor_msft_policy_config_devicelock_devicepasswordenabled_0"
children = [
{
definition_id = "device_vendor_msft_policy_config_devicelock_devicepasswordhistory"
simple = { value = { integer = { value = "24" } } }
}
]
}
}
} },
{ instance = {
definition_id = "device_vendor_msft_policy_config_devicelock_minimumpasswordage"
simple = { value = { integer = { value = "1" } } }
} }
]
depends_on = [azuread_group.mem_windows_devices]
assignments = [
for x in [
"${data.azuread_group.mem_windows_devices.object_id}"
] :
{ target = { group = { group_id = x } } }
]
}