SRG-OS-000072-GPOS-00040 Controls

STIG IDVersionTitleProduct
ALMA-09-036760V1R1AlmaLinux OS 9 must require the change of at least four character classes when passwords are changed.
ALMA-09-036870V1R1AlmaLinux OS 9 must require the maximum number of repeating characters be limited to three when passwords are changed.
ALMA-09-036980V1R1AlmaLinux OS 9 must require the maximum number of repeating characters of the same character class be limited to four when passwords are changed.
ALMA-09-037090V1R1AlmaLinux OS 9 must require the change of at least eight characters when passwords are changed.
UBTU-18-010103V2R15The Ubuntu operating system must require the change of at least 8 characters when passwords are changed.
UBTU-20-010053V1R9The Ubuntu operating system must require the change of at least 8 characters when passwords are changed.
UBTU-24-400290V1R1Ubuntu 24.04 LTS must require the change of at least eight characters when passwords are changed.
UBTU-22-611040V2R1Ubuntu 22.04 LTS must require the change of at least eight characters when passwords are changed.
RHEL-08-020140V1R9RHEL 8 must require the maximum number of repeating characters of the same character class be limited to four when passwords are changed.
RHEL-08-020150V1R9RHEL 8 must require the maximum number of repeating characters be limited to three when passwords are changed.
RHEL-08-020160V1R9RHEL 8 must require the change of at least four character classes when passwords are changed.
RHEL-08-020170V1R9RHEL 8 must require the change of at least 8 characters when passwords are changed.
RHEL-07-010160V3R8The Red Hat Enterprise Linux operating system must be configured so that when passwords are changed a minimum of eight of the total number of characters must be changed.
RHEL-07-010170V3R8The Red Hat Enterprise Linux operating system must be configured so that when passwords are changed a minimum of four character classes must be changed.
RHEL-07-010180V3R8The Red Hat Enterprise Linux operating system must be configured so that when passwords are changed the number of repeating consecutive characters must not be more than three characters.
RHEL-07-010190V3R8The Red Hat Enterprise Linux operating system must be configured so that when passwords are changed the number of repeating characters of the same character class must not be more than four characters.
RHEL-09-611060V2R1RHEL 9 must enforce password complexity rules for the root account.
RHEL-09-611115V2R1RHEL 9 must require the change of at least eight characters when passwords are changed.
RHEL-09-611120V2R1RHEL 9 must require the maximum number of repeating characters of the same character class be limited to four when passwords are changed.
RHEL-09-611125V2R1RHEL 9 must require the maximum number of repeating characters be limited to three when passwords are changed.
RHEL-09-611130V2R1RHEL 9 must require the change of at least four character classes when passwords are changed.
OL09-00-001025V1R1OL 9 must require the change of at least eight characters when passwords are changed.
OL09-00-001030V1R1OL 9 must require the maximum number of repeating characters of the same character class be limited to four when passwords are changed.
OL09-00-001035V1R1OL 9 must require the maximum number of repeating characters be limited to three when passwords are changed.
OL09-00-001040V1R1OL 9 must require the change of at least four character classes when passwords are changed.
OL09-00-001045V1R1OL 9 must enforce password complexity rules for the root account.
SLES-15-020160V1R9The SUSE operating system must require the change of at least eight of the total number of characters when passwords are changed.
SLES-12-010190V2R13The SUSE operating system must require the change of at least eight (8) of the total number of characters when passwords are changed.
OL07-00-010160V2R14The Oracle Linux operating system must be configured so that when passwords are changed a minimum of eight of the total number of characters must be changed.
OL07-00-010170V2R14The Oracle Linux operating system must be configured so that when passwords are changed a minimum of four character classes must be changed.
OL07-00-010180V2R14The Oracle Linux operating system must be configured so that when passwords are changed the number of repeating consecutive characters must not be more than three characters.
OL07-00-010190V2R14The Oracle Linux operating system must be configured so that when passwords are changed the number of repeating characters of the same character class must not be more than four characters.
OL08-00-020140V1R9OL 8 must require the maximum number of repeating characters of the same character class be limited to four when passwords are changed.
OL08-00-020150V1R9OL 8 must require the maximum number of repeating characters be limited to three when passwords are changed.
OL08-00-020160V1R9OL 8 must require the change of at least four character classes when passwords are changed.
OL08-00-020170V1R9OL 8 must require the change of at least 8 characters when passwords are changed.