OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: Password complexity - improvement

From: Ansgar -59cobalt- Wiechers (bugtraqplanetcobalt.net)
Date: Wed Aug 15 2007 - 13:39:18 CDT


On 2007-08-15 dubaisans dubai wrote:
> Is there a way to improve the password complexity requirements in
> Windows 2000/2003 servers
>
> The default will enforce 3 of the following 4 properties - Uppercase,
> smallercase, numbers, special-characters.
>
> Is there a way to enforce all 4 properties.

Enforcing passwords that MUST consist of uppercase letters, lowercase
letters, numbers AND special characters reduces the total number of
possible passwords, which in consequence has a negative impact on your
security.

Regards
Ansgar Wiechers
--
"All vulnerabilities deserve a public fear period prior to patches
becoming available."
--Jason Coombs on Bugtraq