Configuring Security
Defining Users
Cisco 500 Series Stackable Managed Switch Administration Guide
300
18
Setting Password Complexity Rules
Passwords are used to authenticate users accessing the switch. Simple
passwords are potential security hazards. Therefore, password complexity
requirements are enforced by default and may be configured as necessary.
Password complexity requirements are configured on the Password Strength
page reached through the Security drop-down menu. Additionally, password
aging time may be configured on this page.
To define password complexity rules:
STEP 1
Click
Security
>
Password Strength
. The
Password Strength
page is displayed.
STEP 2
Enter the following aging parameters for passwords:
•
Password Aging
—If selected, the user is prompted to change the password
when the
Password Aging Time
expires.
•
Password Aging Time
—Enter the number of days that can elapse before
the user will be prompted to change the password.
NOTE
Password aging also applies to zero-length passwords (no
password).
STEP 3
Select
Password Complexity Settings
to enable complexity rules for passwords.
If password complexity is enabled, new passwords must conform to the following
default settings:
•
Have a minimum length of eight characters.
•
Contain characters from at least three character classes (uppercase letters,
lowercase letters, numbers, and special characters available on a standard
keyboard).
•
Are different from the current password.
•
Contain no character that is repeated more than three times consecutively.
•
Do not repeat or reverse the user’s name or any variant reached by changing
the case of the characters.
•
Do not repeat or reverse the manufacturer’s name or any variant reached by
changing the case of the characters.
STEP 4
If the
Password Complexity Settings
are enabled, the following parameters may
be configured: