Setting Super Password Control Parameters; Displaying And Maintaining Password Control; Password Control Configuration Example - HP 5920 Series Configuration Manual

Hide thumbs Also See for 5920 Series:
Table of Contents

Advertisement

Setting super password control parameters

Step
1.
Enter system view.
2.
Set the password expiration
time for super passwords.
3.
Configure the minimum length
for super passwords.
4.
Configure the password
composition policy for super
passwords.

Displaying and maintaining password control

Execute display commands in any view and reset commands in user view.
Task
Display password control configuration.
Display information about users in the
password control blacklist.
Delete users from the password control
blacklist.
Clear history password records.
NOTE:
The reset password-control history-record command can delete the history password records of one or
all users even when the password history function is disabled.

Password control configuration example

Network requirements
Implement the following global password control policy:
An FTP or VTY user failing to provide the correct password in two successive login attempts is
permanently prohibited from logging in.
A user can log in five times within 60 days after the password expires.
The password expiration time is 30 days.
The minimum password update interval is 36 hours.
The maximum account idle time is 30 days.
A password cannot contain the username or the reverse of the username.
No character appears consecutively three or more times in a password.
Command
system-view
password-control super aging
aging-time
password-control super length
length
password-control super
composition type-number
type-number [ type-length
type-length ]
Command
display password-control [ super ]
display password-control blacklist [ user-name name | ip
ipv4-address | ipv6 ipv6-address ]
reset password-control blacklist [ user-name name ]
reset password-control history-record [ user-name name |
super [ role role name ] ]
106
Remarks
N/A
The default setting is 90 days.
The default setting is 10
characters.
By default, a super password is
valid if it has one valid character
and does not have any invalid
characters.

Advertisement

Table of Contents
loading

This manual is also suitable for:

5900 series

Table of Contents