Minimum password length insufficient |
---|
Risk Level: | Medium | Check or Attack Name: pwlen |
---|---|---|
Platforms: | Windows NT | |
Description: | The allowable minimum password length is less than the value specified in the current policy. In general, passwords shorter than seven characters are especially susceptible to a brute force attack. |
|
Remedy: | Set the minimum password length so that it equals or exceeds the value in the current policy:
|
|
References: |
Know Your Risks |