SV-238227r653856_rule
V-238227
SRG-OS-000480-GPOS-00225
UBTU-20-010056
CAT II
10
Configure the Ubuntu operating system to prevent the use of dictionary words for passwords.
Add or update the following line in the "/etc/security/pwquality.conf" file to include the "dictcheck=1" parameter:
dictcheck=1
Verify the Ubuntu operating system uses the "cracklib" library to prevent the use of dictionary words with the following command:
$ grep dictcheck /etc/security/pwquality.conf
dictcheck=1
If the "dictcheck" parameter is not set to "1" or is commented out, this is a finding.
V-238227
False
UBTU-20-010056
Verify the Ubuntu operating system uses the "cracklib" library to prevent the use of dictionary words with the following command:
$ grep dictcheck /etc/security/pwquality.conf
dictcheck=1
If the "dictcheck" parameter is not set to "1" or is commented out, this is a finding.
M
5318