SV-204418r603261_rule
V-204418
SRG-OS-000075-GPOS-00043
RHEL-07-010230
CAT II
10
Configure the operating system to enforce 24 hours/1 day as the minimum password lifetime.
Add the following line in "/etc/login.defs" (or modify the line to have the required value):
PASS_MIN_DAYS 1
Verify the operating system enforces 24 hours/1 day as the minimum password lifetime for new user accounts.
Check for the value of "PASS_MIN_DAYS" in "/etc/login.defs" with the following command:
# grep -i pass_min_days /etc/login.defs
PASS_MIN_DAYS 1
If the "PASS_MIN_DAYS" parameter value is not "1" or greater, or is commented out, this is a finding.
V-204418
False
RHEL-07-010230
Verify the operating system enforces 24 hours/1 day as the minimum password lifetime for new user accounts.
Check for the value of "PASS_MIN_DAYS" in "/etc/login.defs" with the following command:
# grep -i pass_min_days /etc/login.defs
PASS_MIN_DAYS 1
If the "PASS_MIN_DAYS" parameter value is not "1" or greater, or is commented out, this is a finding.
M
2899