PCI DSS compliance Password requirements


good day,

mistake posted question on wrong forum.. http://social.answers.microsoft.com/forums/en-us/w7security/thread/d3f60946-e87a-461e-a603-2e68d21013eb

anyway,
windows administrator on small domain in bank. 2 roots , 9 children. , have requirement our security department enable password complexity on group policy users.

however, since using many applications, users have number of passwords remember , don't want put complex addition them.

so, asked if possible force password alphanumeric only (letters + digits), no need special caracthers nor caps or smalls.

microsoft windows 2003 has complexity option, if enabled must meet 3 categories mentioned in article
http://msdn.microsoft.com/en-us/library/ms161959.aspx

so, possible have password enable minimum alphanumeric , not mentioned in article above?

regards,
rizaey

not without creating own password filter, requires programming. details can found on msdn web site. or there 3rd parties sell custom password filters. should able find them searching web.


paul adare cto identit inc. ilm mvp


Windows Server  >  Security



Comments

Popular posts from this blog

some help on Event 540

WMI Repository 4GB limit - Win 2003 Ent Question

Event ID 1302 (error 1307) DFS replication service encountered an error while writing to the debug log file