8.2.6 Create a Strong Password

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

When creating or changing passwords for local keystone files, ensure that the passwords are strong, by using the -strong parameter of the gsk8capicmd_64 command.

Rationale:

A stronger password prevents unauthorized access to the database.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Use the -strong parameter on the gsk8capicmd_64 command:

$ gsk8capicmd_64 -keydb -create -dbmykeystore.p12
-pw <yourpasswordhere> -strong -stash

See Also

https://workbench.cisecurity.org/benchmarks/10752