Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-38301 | BB10-00-000210 | SV-50101r2_rule | Medium |
Description |
---|
Password complexity, or strength, is a measure of the effectiveness of a password in resisting guessing and brute force attacks. The ability to crack a password is a function of how many attempts are made to crack the password, how quickly the adversary can make each attempt, and the size of the password space. The longer the minimum length of the password is, the larger the password space. |
STIG | Date |
---|---|
BlackBerry 10 OS Security Technical Implementation Guide | 2014-08-27 |
Check Text ( C-45848r4_chk ) |
---|
From either the Work Space or Personal Space, navigate to "Settings -> BlackBerry Balance" and select "Change Password". Authenticate using the current password. Select "Password Rules" and ensure "Your password must be at least 8 characters." Otherwise, this is a finding. |
Fix Text (F-43239r3_fix) |
---|
On BlackBerry Device Service, set "Minimum Password Length" IT Policy rule to 8. |