GEN000680 - The system must require that passwords contain no more than three consecutive repeating characters.

Information

To enforce the use of complex passwords, the number of consecutive repeating characters is limited. Passwords with excessive repeated characters may be more vulnerable to password-guessing attacks.

Solution

Edit '/etc/pam.d/system-auth' to include the line:

password required pam_cracklib.so maxrepeat=3

prior to the 'password include system-auth-ac' line.

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Group-ID|V-11975, Rule-ID|SV-37294r1_rule, STIG-ID|GEN000680, Vuln-ID|V-11975

Plugin: Unix

Control ID: 394bfb5535efbe30145669f40d3a42ba707b5ca047ed37ad05487111029a62a1