SV-264299r1067634_rule
V-264299
SRG-APP-000845
SRG-APP-000845-NDM-000220
CAT II
10
Configure the network device to verify when users create or update passwords; to ensure the passwords are not found on the list of commonly-used, expected, or compromised passwords in IA-5 (1) (a); a change to any default manufacturer passwords.
Verify the network device is configured to verify when users create or update passwords, that the passwords are not found on the list of commonly-used, expected, or compromised passwords in IA-5 (1) (a), including default manufacturer passwords.
If the network device is not configured to verify when users create or update passwords, that the passwords are not found on the list of commonly-used, expected, or compromised passwords in IA-5 (1) (a), this is a finding.
V-264299
False
SRG-APP-000845-NDM-000220
Verify the network device is configured to verify when users create or update passwords, that the passwords are not found on the list of commonly-used, expected, or compromised passwords in IA-5 (1) (a), including default manufacturer passwords.
If the network device is not configured to verify when users create or update passwords, that the passwords are not found on the list of commonly-used, expected, or compromised passwords in IA-5 (1) (a), this is a finding.
M
2890