ALL >> Computer-Programming >> View Article
Establishing Account And Password Requirements For Information Security
Guidelines for Designing a Strong Password Policy
There are many recommendations for the Windows XP Professionalsettings that can be made in the physical password policy. Which one should be chosen and why? Follow these guidelines when designing password policy:
Consider the restrictions placed on authentication algorithms.If LM is refused and an LM password hash is not stored in the password database, pass-words are harder to crack. Where LM passwords are allowed and stored, longer passwords can be used to negate the ease of cracking LM.
Require the use of complex passwords. Leave the password policy Passwords Must Meet Complexity Requirements enabled.
Consider the history requirement and the maximum password age requirement together. Setting a maximum password age of 30 days and a
password history of 12 might allow a user to create a favorite password for each month of the year—something like "CococoOl, Cococo02, Cococo03, and so on,"
where the number in the password represents the month of the year. These passwords are complex ...
... by the complexity standard and are different, but by knowing
one of them just as the user does, an attacker can figure out what the policy is on MCP certification
almost every clay of the year. (On the other days, she is only a digit away from success. Two guesses are all that's necessary.Set an account lock out policy. But don't make your settings so restrictive that the average person can lock himself out by simply fumble-fingering his password a couple of times. More information about this subject is included in the topic that follows.
Consider the history requirements and the minimum password age requirement together. Setting a history requirement does no good if the user does not have to wait before changing her password. The user can just cycle through as many passwords as necessary to return to her favorite previously used
password. If a minimum password age requirement is used, the user can still cycle passwords but must do so over an extended period of time. For most users, this will not be attempted.
Do not enable Store Passwords Using Reversible Encryption unless you have a specific business reason to do so. If you must provide access to users
who must use systems that cannot use the Windows algorithm, provide this access by using the setting on the individual user account.Do set, or leave on, the security option Prompt User To Change Password Before Expiration. Most people find it easier to change passwords before they absolutely must do so. If this setting is not enabled, users are not warned and will suddenly have to change their password. This might
free Microsoft exam questionsresult in them having to do so under stress.
Add Comment
Computer Programming Articles
1. Best Accounting Software 2025 In Zambia: Tips And Best PracticesAuthor: Doris oseR
2. Aryabhata And The Birth Of Zero: A Legacy That Powers Modern Ai And Machine Learning
Author: Pydun Technology Private Limited
3. Top 5 Video Conferencing Solutions Of 2025
Author: Ben Gross
4. Best Practices For Building High-performance React Native Apps
Author: William
5. Top 10 Reasons To Pursue Full Stack Java Development In India
Author: Rohan Rajput
6. Transform Your Digital Presence With Expert Drupal Development
Author: manish
7. We Provide It Solutions That Help You Succeed
Author: We provide IT solutions that help you succeed
8. What Makes A Full Stack Developer Stand Out In 2025?
Author: Shrushti Gurav
9. Effortlessly Convert Sale Orders To Purchase Orders In Odoo
Author: CodersFort
10. Best Software Development Comapny In Wayanad, Kerala, India
Author: TRUSTWAVES
11. How To Spot Red Flags In Invoices And Stop Fraud Instantly?
Author: Invoice Temple
12. Top Ai Development Company In Delhi: Leading Artificial Intelligence Services By Doubleklickdesign
Author: Prince
13. What Are The Best Coding Institutes In Bhopal?
Author: Shankar Singh
14. Innovating Blockchain Strategies With Mev Bot Technology
Author: aanaethan
15. How To Choose The Right Coding Institute In Bhopal
Author: Shankar Singh