SV-91657r1_rule
V-76961
SRG-APP-000165-NDM-000253
DBNW-DM-000056
CAT II
10
Set a password-reuse variable within the DBN-6300 through the CLI.
This value is set with the following registry entry in the CLI:
reg set /sysconfig/auth/01 {"stores": {"local": {"policies": {"passwordReuse": {"check": true,"numberToKeep": 5 }}}}}
To see if the system prohibits password reuse attempt to change the users password deliberately reusing the last passwords used. The user should fail to update their password for the last five passwords that their account has used.
If the user is able to reuse their password before using five different password, this is a finding.
V-76961
False
DBNW-DM-000056
To see if the system prohibits password reuse attempt to change the users password deliberately reusing the last passwords used. The user should fail to update their password for the last five passwords that their account has used.
If the user is able to reuse their password before using five different password, this is a finding.
M
2947