GEN000680 - The system must require passwords to contain no more than three consecutive repeating characters.

Information

To enforce the use of complex passwords, the number of consecutive repeating characters is limited. Passwords with excessive repeated characters may be more vulnerable to password-guessing attacks.

Solution

Use the chsec command to set maxrepeats to 3.
# chsec -f /etc/security/user -s default -a maxrepeats=3
# chuser maxrepeats=3 < user id >

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-38675r1_rule, STIG-ID|GEN000680, Vuln-ID|V-11975

Plugin: Unix

Control ID: 8c556512daa01d14aa8abde1faae5b02ac1602afe15c6710350ea931da9336a2