SRG-OS-000076-GPOS-00044 Controls

STIG IDVersionTitleProduct
ALMA-09-037970V1R2Passwords for existing users must have a 60-day maximum password lifetime restriction in /etc/shadow.
ALMA-09-038080V1R2Passwords for new users or password changes must have a 60-day maximum password lifetime restriction in /etc/login.defs.
APPL-14-003008V2R3The macOS system must restrict maximum password lifetime to 60 days.
APPL-15-003008V1R3The macOS system must restrict maximum password lifetime to 60 days.
OL07-00-010250V3R2The Oracle Linux operating system must be configured so that passwords for new users are restricted to a 60-day maximum lifetime.
OL07-00-010260V3R2The Oracle Linux operating system must be configured so that existing passwords are restricted to a 60-day maximum lifetime.
OL08-00-020200V2R4OL 8 user account passwords must have a 60-day maximum password lifetime restriction.
OL08-00-020210V2R4OL 8 user account passwords must be configured so that existing passwords are restricted to a 60-day maximum lifetime.
OL09-00-001095V1R1OL 9 user account passwords for new users or password changes must have a 60-day maximum password lifetime restriction in /etc/login.defs.
OL09-00-001100V1R1OL 9 user account passwords must have a 60-day maximum password lifetime restriction.
RHEL-07-010250V3R9The Red Hat Enterprise Linux operating system must be configured so that passwords for new users are restricted to a 60-day maximum lifetime.
RHEL-07-010260V3R9The Red Hat Enterprise Linux operating system must be configured so that existing passwords are restricted to a 60-day maximum lifetime.
RHEL-08-020200V2R3RHEL 8 user account passwords must have a 60-day maximum password lifetime restriction.
RHEL-08-020210V2R3RHEL 8 user account passwords must be configured so that existing passwords are restricted to a 60-day maximum lifetime.
RHEL-09-411010V2R4RHEL 9 user account passwords for new users or password changes must have a 60-day maximum password lifetime restriction in /etc/login.defs.
RHEL-09-411015V2R4RHEL 9 user account passwords must have a 60-day maximum password lifetime restriction.
SLES-12-010280V3R2The SUSE operating system must be configured to create or update passwords with a maximum lifetime of 60 days.
SLES-12-010290V3R2The SUSE operating system must employ user passwords with a maximum lifetime of 60 days.
SLES-15-020220V2R4The SUSE operating system must be configured to create or update passwords with a maximum lifetime of 60 days.
SLES-15-020230V2R4The SUSE operating system must employ user passwords with a maximum lifetime of 60 days.
UBTU-18-010107V2R15The Ubuntu operating system must enforce a 60-day maximum password lifetime restriction. Passwords for new users must have a 60-day maximum password lifetime restriction.
UBTU-20-010008V2R1The Ubuntu operating system must enforce a 60-day maximum password lifetime restriction. Passwords for new users must have a 60-day maximum password lifetime restriction.
UBTU-22-411030V2R4Ubuntu 22.04 LTS must enforce a 60-day maximum password lifetime restriction. Passwords for new users must have a 60-day maximum password lifetime restriction.
UBTU-24-400310V1R1Ubuntu 24.04 LTS must enforce a 60-day maximum password lifetime restriction. Passwords for new users must have a 60-day maximum password lifetime restriction.
WN10-00-000090V3R4Accounts must be configured to require password expiration.
WN10-AC-000025V3R4The maximum password age must be configured to 60 days or less.
WN10-SO-000280V3R4Passwords for enabled local Administrator accounts must be changed at least every 60 days.
WN11-00-000090V2R3Accounts must be configured to require password expiration.
WN11-AC-000025V2R3The maximum password age must be configured to 60 days or less.
WN11-SO-000280V2R3Passwords for enabled local Administrator accounts must be changed at least every 60 days.
WN16-00-000030V2R9Passwords for the built-in Administrator account must be changed at least every 60 days.
WN16-00-000230V2R9Passwords must be configured to expire.
WN16-AC-000050V2R9Windows Server 2016 maximum password age must be configured to 60 days or less.
WN19-00-000020V3R4Windows Server 2019 passwords for the built-in Administrator account must be changed at least every 60 days.
WN19-00-000210V3R4Windows Server 2019 passwords must be configured to expire.
WN19-AC-000050V3R4Windows Server 2019 maximum password age must be configured to 60 days or less.
WN22-00-000020V2R4Windows Server 2022 passwords for the built-in Administrator account must be changed at least every 60 days.
WN22-00-000210V2R4Windows Server 2022 passwords must be configured to expire.
WN22-AC-000050V2R4Windows Server 2022 maximum password age must be configured to 60 days or less.