4.2.7 minalpha

Information

Defines the minimum number of alphabetic characters in a password.

Rationale:

In setting the minalpha attribute, it ensures that passwords have a minimum number of alphabetic characters.

Solution

In /etc/security/user, set the default user stanza minalpha attribute to be greater than or equal to 2:

chsec -f /etc/security/user -s default -a minalpha=2

This means that there must be at least 2 alphabetic characters within a password.

Default Value:

minalpha=0

See Also

https://workbench.cisecurity.org/files/4119

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1), CSCv7|4.4

Plugin: Unix

Control ID: b0a30dcf0eac9c99aa89fb1edae2bb05bd2982017f928e9e19114da064595ba1