5.2.9 mindigit

Information

Defines the minimum number of digits in a password.

Rationale:

In setting the mindigit attribute, the password must contain a digit when it is changed by the user.

Solution

In /etc/security/user, set the default user stanza mindigit attribute to 1:

chsec -f /etc/security/user -s default -a mindigit=1

This means that there must be at least 1 digit within a password.

Default Value:

default mindigit=0

See Also

https://workbench.cisecurity.org/benchmarks/13069

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1), CSCv7|4.4

Plugin: Unix

Control ID: 249286bfab91f6f0ea4dc32b0d3146b38817bbbfd814fe309c830bcaf69d395c