1.52 WN10-AC-000040

Information

The built-in Microsoft password complexity filter must be enabled.

GROUP ID: V-220746RULE ID: SV-220746r1051023

The use of complex passwords increases their strength against guessing and brute-force attacks. This setting configures the system to verify that newly created passwords conform to the Windows password complexity policy.

Solution

Configure the policy value for

Computer Configuration >> Windows Settings >> Security Settings >> Account Policies >> Password Policy >> 'Password must meet complexity requirements'

to 'Enabled'.

See Also

https://workbench.cisecurity.org/benchmarks/23869