Minimum password age incorrect

Risk Level: Low risk vulnerability  Low

Check or Attack Name: Min Pwd Age

Platforms: Windows NT
Description:

The minimum password age is shorter than your policy specifies. Passwords should not be changed too rapidly, or some users will set a newly changed password to one they have used previously.

Remedy:

Configure the minimum password age to value that your security policy specifies. A value of 1 or 2 days is recommended.

To configure the password age, follow these steps:

  1. Open User Manager. From the Windows NT Start menu, select Programs, Administrative Tools (Common), User Manager.
  2. Select the account from the list.
  3. From the Policies menu, select Account to display the Account Policy dialog box.
  4. Under Minimum Password Age, set the value determined by your security policy.
References:

X-Force Logo
Know Your Risks