policies:password_policy
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
policies:password_policy [2016/07/14 21:06] – peter | policies:password_policy [2020/07/15 09:30] (current) – external edit 127.0.0.1 | ||
---|---|---|---|
Line 27: | Line 27: | ||
* Authentication of the user prior to changing the password (acceptable forms of authentication include answering a series of specific questions, showing one or more forms of photo ID, etc.). | * Authentication of the user prior to changing the password (acceptable forms of authentication include answering a series of specific questions, showing one or more forms of photo ID, etc.). | ||
* The new password must comply with password strength requirements associated with the data classification for the service in question. | * The new password must comply with password strength requirements associated with the data classification for the service in question. | ||
- | * System identity credentials (security tokens, security certificates, | + | * System identity credentials (security tokens, security certificates, |
* Unattended computing devices must be secured from unauthorized access using a combination of physical and logical security controls commensurate with associated risks. | * Unattended computing devices must be secured from unauthorized access using a combination of physical and logical security controls commensurate with associated risks. | ||
For more information on creating secure " | For more information on creating secure " | ||
policies/password_policy.1468530403.txt.gz · Last modified: 2020/07/15 09:30 (external edit)