5.3.1 Ensure password creation requirements are configured - password-auth ucredit

Information

Strong passwords protect systems from being hacked through brute force methods.

Solution

Edit /etc/security/pwquality.conf to add or update the following settings to conform to site policy: minlen=14 dcredit=-1 ucredit=-1 ocredit=-1 lcredit=-1

See Also

https://workbench.cisecurity.org/files/1863

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1)(a), CSCv6|5.7, CSCv6|16.12

Plugin: Unix

Control ID: b9f5941030a9c78d03499687b0dfa25608e0da462c10c7d1d0bc3bcbaf4c9e74