STIGQter STIGQter: STIG Summary: VMware NSX 4.x Manager NDM Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 30 Jan 2025:

The NSX Manager must require that when a password is changed, the characters are changed in at least eight of the positions within the password.

DISA Rule

SV-265321r1043189_rule

Vulnerability Number

V-265321

Group Title

SRG-APP-000170-NDM-000329

Rule Version

NMGR-4X-000044

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

From an NSX Manager shell, run the following command:

> set password-complexity max-repeats 8

Check Contents

From an NSX Manager shell, run the following command:

> get password-complexity

If the number of consecutive characters allowed for reuse is not eight or more, this is a finding.

Note: If this has not previously been configured it will not be shown in the output.

Vulnerability Number

V-265321

Documentable

False

Rule Version

NMGR-4X-000044

Severity Override Guidance

From an NSX Manager shell, run the following command:

> get password-complexity

If the number of consecutive characters allowed for reuse is not eight or more, this is a finding.

Note: If this has not previously been configured it will not be shown in the output.

Check Content Reference

M

Target Key

5633