Skip to content

The Photon operating system must use the "pam_cracklib" module.

An XCCDF Rule

Description

If the operating system allows the user to select passwords based on dictionary words, this increases the chances of password compromise by increasing the opportunity for successful guesses and brute-force attacks.

ID
SV-256541r991587_rule
Version
PHTN-30-000071
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Navigate to and open:

/etc/pam.d/system-password

Add the following, replacing any existing "pam_cracklib.so" line: