Skip to content

The CA-TSS NPWRTHRESH Control Option must be properly set.

An XCCDF Rule

Description

By limiting the number of failed logon attempts, the risk of unauthorized system access via user password guessing, otherwise known as brute-force attacks, is reduced. Limits are imposed by locking the account.

ID
SV-223877r958388_rule
Version
TSS0-ES-000040
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Evaluate the impact associated with implementation of the control option. Develop a plan of action to implement the control option setting as specified following and proceed with the change.

NPWRTHRESH(02)