Password Strength Check
Rule Details
Parameter |
Description |
---|---|
Rule Name |
iam-password-policy |
Identifier |
iam-password-policy |
Description |
If the password of an IAM user does not meet the password strength requirements, this IAM user is noncompliant. |
Tag |
iam |
Trigger Type |
Configuration change |
Filter Type |
iam.users |
Configure Rule Parameters |
pwdStrength: indicates the password strength. Values include Strong, Medium, and Low. The default value is Strong.
NOTE:
Password strength:
|
Applicable Scenario
This rule allows you to detect passwords that do not meet the specified password strength requirements. For more details, see Set a Strong Password Policy.
Solution
You can modify noncompliant passwords. For details, see Changing the Login Password of an IAM User.
Rule Logic
- If an IAM user does not have a password configured, this user is compliant.
- If an IAM user is in the disabled state, this user is compliant.
- If an IAM user is in the enabled state and their password meets the specified strength requirements, this user is compliant.
- If an IAM user is in the enabled state and their password does not neet the specified strength requirements, this user is noncompliant
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot