SV-230365r627750_rule
V-230365
SRG-OS-000075-GPOS-00043
RHEL-08-020190
CAT II
10
Configure the operating system to enforce 24 hours/1 day as the minimum password lifetime.
Add the following line in "/etc/login.defs" (or modify the line to have the required value):
PASS_MIN_DAYS 1
Verify the operating system enforces 24 hours/1 day as the minimum password lifetime for new user accounts.
Check for the value of "PASS_MIN_DAYS" in "/etc/login.defs" with the following command:
$ sudo grep -i pass_min_days /etc/login.defs
PASS_MIN_DAYS 1
If the "PASS_MIN_DAYS" parameter value is not "1" or greater, or is commented out, this is a finding.
V-230365
False
RHEL-08-020190
Verify the operating system enforces 24 hours/1 day as the minimum password lifetime for new user accounts.
Check for the value of "PASS_MIN_DAYS" in "/etc/login.defs" with the following command:
$ sudo grep -i pass_min_days /etc/login.defs
PASS_MIN_DAYS 1
If the "PASS_MIN_DAYS" parameter value is not "1" or greater, or is commented out, this is a finding.
M
2921