The system must require passwords to contain at least one special character.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-216330SOL-11.1-040100SV-216330r1016275_ruleCCI-004066medium
Description
Complex passwords can reduce the likelihood of success of automated password-guessing attacks.
STIGDate
Solaris 11 SPARC Security Technical Implementation Guide2025-05-05

Details

Check Text (C-216330r1016275_chk)

Check the MINSPECIAL setting. # grep ^MINSPECIAL /etc/default/passwd If the MINSPECIAL setting is less than 1, this is a finding.

Fix Text (F-17564r371079_fix)

The root role is required. # pfedit /etc/default/passwd a Locate the line containing: MINSPECIAL Change the line to read: MINSPECIAL=1