1.1.4 Minimum password length (>=8)

Information

This control defines the minimum number of characters a user password must contain. Enforcing a minimum password length helps protect against brute force and dictionary attacks.

Solution

Make sure 'Minimum password length' is set to a minumum of 8 characters.

See Also

https://workbench.cisecurity.org/files/10

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1), CCE|CCE-2240-0

Plugin: Windows

Control ID: 504a10ca413dcb1a5de8a2fcac153ce13ef8901ba3bc5ccf7a2d16cceaca7f34