244
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Set the password expiration
time.
password-control aging
aging-time
The default setting is 90 days.
3.
Set the minimum password
update interval.
password-control update
interval interval
The default setting is 24 hours.
4.
Set the minimum password
length.
password-control length length
•
In non-FIPS mode, the
default setting is 10
characters.
•
In FIPS mode, the default
length is 15 characters.
5.
Configure the password
composition policy.
password-control composition
type-number type-number
[
type-length
type-length
]
The following default settings
apply:
•
In non-FIPS mode, a
password must contain a
minimum of one character
type and a minimum of one
character for each type.
•
In FIPS mode, a password
must contain a minimum of
four character types and a
minimum of one character
for each type.
6.
Configure the password
complexity checking policy.
password-control complexity
{
same-character
|
user-name
}
check
By default, the system does not
perform password complexity
checking.
7.
Set the maximum number of
history password records for
each user.
password-control history
max-record-number
The default setting is 4.
8.
Configure the login attempt
limit.
password-control login-attempt
login-times
[
exceed
{
lock
|
lock-time
time
|
unlock
} ]
By default, the maximum number
of login attempts is 3 and a user
failing to log in after the specified
number of attempts must wait for
1 minute before trying again.
9.
Set the number of days
during which a user is
notified of the pending
password expiration.
password-control
alert-before-expire alert-time
The default setting is 7 days.
10.
Set the maximum number of
days and maximum number
of times that a user can log in
after the password expires.
password-control
expired-user-login delay delay
times times
By default, a user can log in three
times within 30 days after the
password expires.
11.
Set the maximum account
idle time.
password-control login
idle-time idle-time
The default setting is 90 days.
Setting user group password control parameters
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Create a user group and
enter its view.
user-group group-name
By default, no user groups exist.
For information about how to
Содержание FlexFabric 5940 SERIES
Страница 251: ...238 ...