Specops Password Sync by Specops Software Inc. instantly synchronizes Active Directory passwords to domains, including domains in the same forest or other forests, on-premises systems (e.g., Kerberos), and SaaS targets (e.g., O365). It enhances security by ensuring that password complexity applies to all systems consistently. Specops Password Sync captures and synchronizes all changes to a user’s password according to Group Policy rules. It can be set up in a few hours by configuring the local Active Directory. Its extensible framework allows for the creation of custom sync providers. Specops Password Sync extends Active Directory password security to other business systems, including external SaaS resources. When combined with a strong password policy, Specops Password Sync ensures that the same level of password complexity applies to all connected systems. It uses a self-signed certificate to encrypt traffic from the Password Sync Notifier Filter Service on domain controllers. The certificate should be renewed before expiration to avoid communication issues between the domain controller notifiers and the sync server. Specops Password Sync Server should be installed on a Windows Server and handles the syncing over to your destination sync point. Specops Password Sync Notifier must be installed on all writable Domain Controllers.