SRG-OS-000072-GPOS-00040 Controls

STIG ID Version Title Product
ALMA-09-036760 V1R1 AlmaLinux OS 9 must require the change of at least four character classes when passwords are changed.
ALMA-09-036870 V1R1 AlmaLinux OS 9 must require the maximum number of repeating characters be limited to three when passwords are changed.
ALMA-09-036980 V1R1 AlmaLinux OS 9 must require the maximum number of repeating characters of the same character class be limited to four when passwords are changed.
ALMA-09-037090 V1R1 AlmaLinux OS 9 must require the change of at least eight characters when passwords are changed.
OL07-00-010160 V3R1 The Oracle Linux operating system must be configured so that when passwords are changed a minimum of eight of the total number of characters must be changed.
OL07-00-010170 V3R1 The Oracle Linux operating system must be configured so that when passwords are changed a minimum of four character classes must be changed.
OL07-00-010180 V3R1 The Oracle Linux operating system must be configured so that when passwords are changed the number of repeating consecutive characters must not be more than three characters.
OL07-00-010190 V3R1 The Oracle Linux operating system must be configured so that when passwords are changed the number of repeating characters of the same character class must not be more than four characters.
OL08-00-020140 V2R2 OL 8 must require the maximum number of repeating characters of the same character class be limited to four when passwords are changed.
OL08-00-020150 V2R2 OL 8 must require the maximum number of repeating characters be limited to three when passwords are changed.
OL08-00-020160 V2R2 OL 8 must require the change of at least four character classes when passwords are changed.
OL08-00-020170 V2R2 OL 8 must require the change of at least eight characters when passwords are changed.
RHEL-07-010160 V3R9 The Red Hat Enterprise Linux operating system must be configured so that when passwords are changed a minimum of eight of the total number of characters must be changed.
RHEL-07-010170 V3R9 The Red Hat Enterprise Linux operating system must be configured so that when passwords are changed a minimum of four character classes must be changed.
RHEL-07-010180 V3R9 The Red Hat Enterprise Linux operating system must be configured so that when passwords are changed the number of repeating consecutive characters must not be more than three characters.
RHEL-07-010190 V3R9 The Red Hat Enterprise Linux operating system must be configured so that when passwords are changed the number of repeating characters of the same character class must not be more than four characters.
RHEL-08-020140 V2R1 RHEL 8 must require the maximum number of repeating characters of the same character class be limited to four when passwords are changed.
RHEL-08-020150 V2R1 RHEL 8 must require the maximum number of repeating characters be limited to three when passwords are changed.
RHEL-08-020160 V2R1 RHEL 8 must require the change of at least four character classes when passwords are changed.
RHEL-08-020170 V2R1 RHEL 8 must require the change of at least 8 characters when passwords are changed.
RHEL-09-611060 V2R2 RHEL 9 must enforce password complexity rules for the root account.
RHEL-09-611115 V2R2 RHEL 9 must require the change of at least eight characters when passwords are changed.
RHEL-09-611120 V2R2 RHEL 9 must require the maximum number of repeating characters of the same character class be limited to four when passwords are changed.
RHEL-09-611125 V2R2 RHEL 9 must require the maximum number of repeating characters be limited to three when passwords are changed.
RHEL-09-611130 V2R2 RHEL 9 must require the change of at least four character classes when passwords are changed.
SLES-12-010190 V3R1 The SUSE operating system must require the change of at least eight (8) of the total number of characters when passwords are changed.
SLES-15-020160 V2R2 The SUSE operating system must require the change of at least eight of the total number of characters when passwords are changed.
UBTU-18-010103 V2R15 The Ubuntu operating system must require the change of at least 8 characters when passwords are changed.
UBTU-20-010053 V2R1 The Ubuntu operating system must require the change of at least 8 characters when passwords are changed.
UBTU-22-611040 V2R2 Ubuntu 22.04 LTS must require the change of at least eight characters when passwords are changed.