Password Policy

Defining a strong password policy:

Almost 63 percent of hackers targeting SMB's take advantage of weak passwords and out of this, 93 percent of hackers take just few mins to identify the passwords and compromise accounts.

Password's are the first step towards effective IT security management, hence to keep your password's strong and secured here are few password security best practices to be followed by users and enterprises,

  1. Keep your passwords lengthy and complex.
  2. Combination of alphabets, numbers and special characters are difficult to compromise.
  3. Avoid using personal references like date of birth, surname, etc., as passwords.
  4. Use different passwords for different accounts.
  5. Avoid using adjacent keywords like "qwerty" or "asdzxc" and more common terms like "password" or "username".
  6. Don't write down your password anywhere.
  7. Have an expiry duration for the password's, so users will continuously update them.
  8. Avoid checking ON the "Remember me" option while login in to your account.
  9. Employing a password manager tool can help if there are multiple accounts with different type of passwords. 
  10.  

Defining password:

We at ManageEngine have developed customized scripts for defining strong passwords for machine level policies.

The below script will assist in setting up a strong password policy for client system, once the current password expires, the new password will abide to the previously defined password policy.

Steps for defining the password:

  1. Navigate to configuration-> ScriptRepository
  2. Click on Templates tab.
  3. Select Script PasswordPolicies.bat and Add the script to repository.
  4. Then, go to Repository and select the PasswordPolicies.bat to be executed.
  5. Create configuration for the selected script.
  6. Give appropriate arguments by reading the script description.
  7. Define the target and deploy.

OS Support: Above Windows XP and server OS 2003.