UCF STIG Viewer Logo

The maximum age for machine account passwords is not set to requirements.


Overview

Finding ID Version Rule ID IA Controls Severity
V-3373 4.043 SV-29245r1_rule IAIA-1 IAIA-2 Low
Description
This setting controls the maximum password age that a machine account may have. This setting should be set to no more than 30 days, ensuring the machine changes its password monthly.
STIG Date
Windows 2003 Domain Controller Security Technical Implementation Guide 2015-06-23

Details

Check Text ( None )
None
Fix Text (F-34273r1_fix)
Configure the policy value for Computer Configuration -> Windows Settings -> Security Settings -> Local Policies -> Security Options -> “Domain Member: Maximum Machine Account Password Age” to 30 or less, but not 0.