I've been playing around with the SPpwd solution which gives you some great
capabilities for managing moss/wss service account passwords. The
configuration I'm working uses all AD domain accounts as recommended by
Microsoft. I've noticed after going to Operations > Service Accounts, that
there were a few applications that no longer exist listed there. Using the
SPpwd tool, I am able to dump the usernames and passwords stored within the
config database and I've also noticed that these dormant accounts are listed
with some really old passwords that are no longer valid.
Is there a way to clean up this list of accounts? I'm sure that it's not a
good thing to store unnecessary credentials stored within the database.
Additionally, why doesn't moss/wss clean this up automatically when a web
application is removed?