Password Change Interval (hours)

Information

The maximum number of hours over which the number of password changes specified in the Change Interval field are enforced. The range is from 1 to 745 seconds. The default is 48.

For example, if this field is set to 48 and the Change Interval field is set to 2, a locally authenticated user can make no more than 2 password changes within a 48 hour period.

Solution

Log into the Cisco APIC Web Console:
Navigate to 'Admin' -> 'AAA' -> 'Security'.

Click the 'Management Settings' tab.

In the 'Properties' section ensure 'Password Change Interval (hours)' is set to an appropriate value for your environment.

Item Details

Audit Name: Tenable Cisco ACI

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1)(d)

Plugin: Cisco_ACI

Control ID: 27f074e4b3ecfacbe26b938ff39d12841dfacf9f1dc57e4d2db807dc9e3e4eee