STIGQter STIGQter: STIG Summary: Nokia Service Router OS 25.x Network Device Management Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 28 Apr 2026:

The Nokia router must require that when a password is changed, the characters are changed in at least eight of the positions within the password.

DISA Rule

SV-283772r1203361_rule

Vulnerability Number

V-283772

Group Title

SRG-APP-000170-NDM-000329

Rule Version

NOKI-ND-000430

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Nokia router to enforce password complexity by requiring that when a password is changed, the characters are changed in at least eight of the positions within the password, using the command below:

- configure system security password minimum-change 8

Check Contents

Review the Nokia router configuration to verify it complies with this requirement, as shown in the example below:

- show system security password-options | match distance

Required distance with previous password : 8

If "Required distance with previous password" is not set to a minimum of "8", this is a finding.

Vulnerability Number

V-283772

Documentable

False

Rule Version

NOKI-ND-000430

Severity Override Guidance

Review the Nokia router configuration to verify it complies with this requirement, as shown in the example below:

- show system security password-options | match distance

Required distance with previous password : 8

If "Required distance with previous password" is not set to a minimum of "8", this is a finding.

Check Content Reference

M

Target Key

5744