SV-219175r610963_rule
V-219175
SRG-OS-000072-GPOS-00040
UBTU-18-010103
CAT III
10
Configure the Ubuntu operating system to require the change of at least 8 characters when passwords are changed.
Add or update the "/etc/security/pwquality.conf" file to include the "difok=8" parameter:
difok=8
Verify the Ubuntu operating system requires the change of at least 8 characters when passwords are changed.
Determine if the field "difok" is set in the "/etc/security/pwquality.conf" file with the following command:
# grep -i "difok" /etc/security/pwquality.conf
difok=8
If the "difok" parameter is less than "8", or is commented out, this is a finding.
V-219175
False
UBTU-18-010103
Verify the Ubuntu operating system requires the change of at least 8 characters when passwords are changed.
Determine if the field "difok" is set in the "/etc/security/pwquality.conf" file with the following command:
# grep -i "difok" /etc/security/pwquality.conf
difok=8
If the "difok" parameter is less than "8", or is commented out, this is a finding.
M
4055