SV-271619r1091569_rule
V-271619
SRG-OS-000072-GPOS-00040
OL09-00-001035
CAT II
10
Configure OL 9 to require the change of the number of repeating consecutive characters when passwords are changed by setting the "maxrepeat" option.
Add the following line to "/etc/security/pwquality.conf" (or modify the line to have the required value):
maxrepeat = 3
Verify that OL 9 requires the maximum number of repeating characters be limited to three when passwords are changed.
Verify the value of the "maxrepeat" option in "/etc/security/pwquality.conf" with the following command:
$ grep maxrepeat /etc/security/pwquality.conf /etc/security/pwquality.conf.d/*.conf
maxrepeat = 3
If the value of "maxrepeat" is set to more than "3", or is commented out, this is a finding.
V-271619
False
OL09-00-001035
Verify that OL 9 requires the maximum number of repeating characters be limited to three when passwords are changed.
Verify the value of the "maxrepeat" option in "/etc/security/pwquality.conf" with the following command:
$ grep maxrepeat /etc/security/pwquality.conf /etc/security/pwquality.conf.d/*.conf
maxrepeat = 3
If the value of "maxrepeat" is set to more than "3", or is commented out, this is a finding.
M
5680