Passwords Shall:
-
be changed immediately from any default password;
-
be changed immediately after being reset;
-
be at least 8 characters long;
-
contain at least one upper and one lower case alphabetic character;
-
contain at least one numeric or special character.
|
Passwords Shall Not:
-
be a standalone word or common abbreviation in any language, slang, dialect or jargon;
-
be based on personal information, names of family, etc.;
-
be reused for at least two years,
-
be less than 8 characters.
|