SRG-OS-000069-GPOS-00037 Controls

STIG IDVersionTitleProduct
ALMA-09-035880V1R2AlmaLinux OS 9 must ensure the password complexity module is enabled in the password-auth file.
ALMA-09-035990V1R2AlmaLinux OS 9 must ensure the password complexity module in the system-auth file is configured for three retries or less.
ALMA-09-036100V1R2AlmaLinux OS 9 must enforce password complexity rules for the root account.
ALMA-09-036210V1R2AlmaLinux OS 9 must enforce password complexity by requiring that at least one uppercase character be used.
APPL-14-003060V2R3The macOS system must require passwords contain a minimum of one lowercase character and one uppercase character.
APPL-15-003060V1R3The macOS system must require that passwords contain a minimum of one lowercase character and one uppercase character.
OL07-00-010118V3R2The Oracle Linux operating system must be configured so that /etc/pam.d/passwd implements /etc/pam.d/system-auth when changing passwords.
OL07-00-010119V3R2The Oracle Linux operating system must be configured so that when passwords are changed or new passwords are established, pwquality must be used.
OL07-00-010120V3R2The Oracle Linux operating system must be configured so that when passwords are changed or new passwords are established, the new password must contain at least one upper-case character.
OL08-00-020100V2R4OL 8 must ensure the password complexity module is enabled in the password-auth file.
OL08-00-020110V2R4OL 8 must enforce password complexity by requiring that at least one uppercase character be used.
OL09-00-001001V1R1OL 9 must ensure the password complexity module in the system-auth file is configured for three retries or less.
OL09-00-001005V1R1OL 9 must enforce password complexity by requiring that at least one uppercase character be used.
OL09-00-001010V1R1OL 9 must ensure the password complexity module is enabled in the password-auth file.
RHEL-07-010118V3R9The Red Hat Enterprise Linux operating system must be configured so that /etc/pam.d/passwd implements /etc/pam.d/system-auth when changing passwords.
RHEL-07-010119V3R9The Red Hat Enterprise Linux operating system must be configured so that when passwords are changed or new passwords are established, pwquality must be used.
RHEL-07-010120V3R9The Red Hat Enterprise Linux operating system must be configured so that when passwords are changed or new passwords are established, the new password must contain at least one upper-case character.
RHEL-08-020100V2R3RHEL 8 must ensure the password complexity module is enabled in the password-auth file.
RHEL-08-020110V2R3RHEL 8 must enforce password complexity by requiring that at least one uppercase character be used.
RHEL-09-611010V2R4RHEL 9 must ensure the password complexity module in the system-auth file is configured for three retries or less.
RHEL-09-611040V2R4RHEL 9 must ensure the password complexity module is enabled in the password-auth file.
RHEL-09-611110V2R4RHEL 9 must enforce password complexity by requiring that at least one uppercase character be used.
SLES-12-010150V3R2The SUSE operating system must enforce passwords that contain at least one upper-case character.
SLES-15-020130V2R4The SUSE operating system must enforce passwords that contain at least one uppercase character.
UBTU-18-010100V2R15The Ubuntu operating system must enforce password complexity by requiring that at least one upper-case character be used.
UBTU-20-010050V2R1The Ubuntu operating system must enforce password complexity by requiring that at least one upper-case character be used.
UBTU-22-611010V2R4Ubuntu 22.04 LTS must enforce password complexity by requiring at least one uppercase character be used.
UBTU-24-400260V1R1Ubuntu 24.04 LTS must enforce password complexity by requiring that at least one uppercase character be used.
WN10-AC-000040V3R4The built-in Microsoft password complexity filter must be enabled.
WN11-AC-000040V2R3The built-in Microsoft password complexity filter must be enabled.
WN16-AC-000080V2R9Windows Server 2016 must have the built-in Windows password complexity policy enabled.
WN19-AC-000080V3R4Windows Server 2019 must have the built-in Windows password complexity policy enabled.
WN22-AC-000080V2R4Windows Server 2022 must have the built-in Windows password complexity policy enabled.