SV-230359r627750_rule
V-230359
SRG-OS-000071-GPOS-00039
RHEL-08-020130
CAT II
10
Configure the operating system to enforce password complexity by requiring that at least one numeric character be used by setting the "dcredit" option.
Add the following line to /etc/security/pwquality.conf (or modify the line to have the required value):
dcredit = -1
Verify the value for "dcredit" in "/etc/security/pwquality.conf" with the following command:
$ sudo grep dcredit /etc/security/pwquality.conf
dcredit = -1
If the value of "dcredit" is a positive number or is commented out, this is a finding.
V-230359
False
RHEL-08-020130
Verify the value for "dcredit" in "/etc/security/pwquality.conf" with the following command:
$ sudo grep dcredit /etc/security/pwquality.conf
dcredit = -1
If the value of "dcredit" is a positive number or is commented out, this is a finding.
M
2921