3.1.2 /etc/security/user - minage

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Defines the minimum number of weeks before a password can be changed.

In setting the minage attribute, it prohibits users changing their password until a set number of weeks have passed.

Solution

In/etc/security/user, set the default user stanza minage attribute to 1-

chsec -f /etc/security/user -s default -a minage=1

This means that a user cannot change their password until at least a week after being set.

See Also

https://workbench.cisecurity.org/files/528