Enforce Password Change Interval

Information

Restricts the number of password changes a locally authenticated user can make within a given number of hours. The value can be:
- Enable - The change interval policy is active.
- Disable - The change count policy is active.

The default is Enable.

Note: You must have admin or aaa privileges to change the password profile properties.

Solution

Log into the Cisco APIC Web Console:
Navigate to 'Admin' -> 'AAA' -> 'Security'.

Click the 'Management Settings' tab.

In the 'Properties' section ensure 'Enforce Password Change Interval' is set to 'Enabled'

Item Details

Audit Name: Tenable Cisco ACI

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1)(d)

Plugin: Cisco_ACI

Control ID: fcceecfa67cff3e9822672c3ca3af909ec9c4b50e3981ec0ebc68a2e3f4c44df