SRG-OS-000076-GPOS-00044 Controls

STIG IDVersionTitleProduct
ALMA-09-037970V1R3Passwords for existing users must have a 60-day maximum password lifetime restriction in /etc/shadow.
ALMA-09-038080V1R3Passwords for new users or password changes must have a 60-day maximum password lifetime restriction in /etc/login.defs.
APPL-13-003008V1R5The macOS system must enforce a 60-day maximum password lifetime restriction.
APPL-14-003008V2R3The macOS system must restrict maximum password lifetime to 60 days.
APPL-15-003008V1R3The macOS system must restrict maximum password lifetime to 60 days.
OL07-00-010250V3R3The Oracle Linux operating system must be configured so that passwords for new users are restricted to a 60-day maximum lifetime.
OL07-00-010260V3R3The Oracle Linux operating system must be configured so that existing passwords are restricted to a 60-day maximum lifetime.
OL08-00-020200V2R5OL 8 user account passwords must have a 60-day maximum password lifetime restriction.
OL08-00-020210V2R5OL 8 user account passwords must be configured so that existing passwords are restricted to a 60-day maximum lifetime.
OL09-00-001095V1R2OL 9 user account passwords for new users or password changes must have a 60-day maximum password lifetime restriction in /etc/login.defs.
OL09-00-001100V1R2OL 9 user account passwords must have a 60-day maximum password lifetime restriction.
RHEL-07-010250V3R9The Red Hat Enterprise Linux operating system must be configured so that passwords for new users are restricted to a 60-day maximum lifetime.
RHEL-07-010260V3R9The Red Hat Enterprise Linux operating system must be configured so that existing passwords are restricted to a 60-day maximum lifetime.
RHEL-08-020200V2R4RHEL 8 user account passwords must have a 60-day maximum password lifetime restriction.
RHEL-08-020210V2R4RHEL 8 user account passwords must be configured so that existing passwords are restricted to a 60-day maximum lifetime.
RHEL-09-411010V2R5RHEL 9 user account passwords for new users or password changes must have a 60-day maximum password lifetime restriction in /etc/login.defs.
RHEL-09-411015V2R5RHEL 9 user account passwords must have a 60-day maximum password lifetime restriction.
SLES-12-010280V3R2The SUSE operating system must be configured to create or update passwords with a maximum lifetime of 60 days.
SLES-12-010290V3R2The SUSE operating system must employ user passwords with a maximum lifetime of 60 days.
SLES-15-020220V2R4The SUSE operating system must be configured to create or update passwords with a maximum lifetime of 60 days.
SLES-15-020230V2R4The SUSE operating system must employ user passwords with a maximum lifetime of 60 days.
UBTU-18-010107V2R15The Ubuntu operating system must enforce a 60-day maximum password lifetime restriction. Passwords for new users must have a 60-day maximum password lifetime restriction.
UBTU-20-010008V2R3The Ubuntu operating system must enforce a 60-day maximum password lifetime restriction. Passwords for new users must have a 60-day maximum password lifetime restriction.
UBTU-22-411030V2R4Ubuntu 22.04 LTS must enforce a 60-day maximum password lifetime restriction. Passwords for new users must have a 60-day maximum password lifetime restriction.
UBTU-24-400310V1R1Ubuntu 24.04 LTS must enforce a 60-day maximum password lifetime restriction. Passwords for new users must have a 60-day maximum password lifetime restriction.
WN10-00-000090V3R4Accounts must be configured to require password expiration.
WN10-AC-000025V3R4The maximum password age must be configured to 60 days or less.
WN10-SO-000280V3R4Passwords for enabled local Administrator accounts must be changed at least every 60 days.
WN11-00-000090V2R4Accounts must be configured to require password expiration.
WN11-AC-000025V2R4The maximum password age must be configured to 60 days or less.
WN11-SO-000280V2R4Passwords for enabled local Administrator accounts must be changed at least every 60 days.
WN16-00-000030V2R9Passwords for the built-in Administrator account must be changed at least every 60 days.
WN16-00-000230V2R9Passwords must be configured to expire.
WN16-AC-000050V2R9Windows Server 2016 maximum password age must be configured to 60 days or less.
WN19-00-000020V3R4Windows Server 2019 passwords for the built-in Administrator account must be changed at least every 60 days.
WN19-00-000210V3R4Windows Server 2019 passwords must be configured to expire.
WN19-AC-000050V3R4Windows Server 2019 maximum password age must be configured to 60 days or less.
WN22-00-000020V2R5Windows Server 2022 passwords for the built-in Administrator account must be changed at least every 60 days.
WN22-00-000210V2R5Windows Server 2022 passwords must be configured to expire.
WN22-AC-000050V2R5Windows Server 2022 maximum password age must be configured to 60 days or less.