1.52 WN10-AC-000040

Information

The built-in Microsoft password complexity filter must be enabled.

GROUP ID: V-220746RULE ID: SV-220746r1051023

The use of complex passwords increases their strength against guessing and brute-force attacks. This setting configures the system to verify that newly created passwords conform to the Windows password complexity policy.

Solution

Configure the policy value for

Computer Configuration >> Windows Settings >> Security Settings >> Account Policies >> Password Policy >> 'Password must meet complexity requirements'

to 'Enabled'.

See Also

https://workbench.cisecurity.org/benchmarks/23869

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1)(a)

Plugin: Windows

Control ID: ff844cf969df5c64a7c834e9bcd0de52597d92c66ba270b65b772229e872497f