1. Home
  2. Security Hardening
  3. CIS Palo Alto Firewall 9 Benchmark V1.0.0 L1
  4. Ensure ‘Minimum Numeric Letters’ is greater than or equal to 1

Ensure ‘Minimum Numeric Letters’ is greater than or equal to 1

Details

This checks all new passwords to ensure that they contain at least one base 10 digit (0 through 9).

Rationale:

This is one of several settings that, when taken together, ensure that passwords are sufficiently complex as to thwart brute force and dictionary attacks.

Solution

Navigate to Device > Setup > Management > Minimum Password Complexity
Set Minimum Numeric Letters to greater than or equal to 1

Default Value:

Not enabled.

References:

‘PAN-OS Administrator’s Guide 9.0 (English) – Best Practices for Securing Administrative Access’ – https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/getting-started/best-practices-for-securing-administrative-access.html

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Identification and Authentication.This control applies to the following type of system Palo_Alto.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles