APPL-13-003009 - The macOS system must prohibit password reuse for a minimum of five generations.

Information

Password complexity, or strength, is a measure of the effectiveness of a password in resisting attempts at guessing and brute-force attacks. If the information system or application allows the user to consecutively reuse their password when that password has exceeded its defined lifetime, the result is a password that is not changed as per policy requirements.

Solution

Configure the macOS system to prohibit password reuse for five generations by installing the 'Passcode Policy' configuration profile.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_macOS_13_V1R3_STIG.zip

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1)(e), CAT|II, CCI|CCI-000200, Rule-ID|SV-257228r905317_rule, STIG-ID|APPL-13-003009, Vuln-ID|V-257228

Plugin: Unix

Control ID: 92e313c9a7393313e187c9e8bb968470c13e1aad640743fd4187f1cd6099be47