OSX00030 - Minimum password length

Information

Information systems not protected with strong password schemes, including passwords of minimum length, provide the opportunity for anyone to crack the password, thus, gaining access to the system and causing the device, information, or the local network to be compromised or lead to a denial of service.

Solution

Open a terminal session and use the following command to set the value for minimum password length- sudo pwpolicy -n -setglobalpolicy 'minChars=15'.

Note- For non-managed system, use the command- pwpolicy -n /Local/Default -setglobalpolicy 'minChars=15'.

See Also

http://iase.disa.mil/stigs/os/mac/u_mac_osx10.5_v1r2_stig_20110729.zip

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1), CAT|II, Rule-ID|SV-31272r1_rule, STIG-ID|OSX00030, Vuln-ID|V-25230

Plugin: Unix

Control ID: 5c40bf83eb05eca9594ac5a7e15fcdd4bee0d3675d96fc09af7f962ce8830acc