DISA STIGS Viewer

The system must require passwords to contain at least one uppercase alphabetic character.

Overview

Finding ID Version Rule ID IA Controls Severity
V-216092 SOL-11.1-040070 SV-216092r1016287_rule   Medium
Description
Complex passwords can reduce the likelihood of success of automated password-guessing attacks.
STIG Date
Solaris 11 X86 Security Technical Implementation Guide 2024-11-25

Details

Check Text (C-17330r986432_chk)
Check the MINUPPER setting.

# grep ^MINUPPER /etc/default/passwd

If MINUPPER is not set to one or more, this is a finding.
Fix Text (F-17328r986433_fix)
The root role is required.

# pfedit /etc/default/passwd

Locate the line containing:

MINUPPER

Change the line to read:

MINUPPER=1