[wplug] Security Policy

Scott Eicher Scott.Eicher at e-Profile.com
Thu Jun 5 18:24:11 EDT 2003


Hello all,

We are doing some testing of our banking database on Red Hat to see what the
performance difference would be between it and AIX. We normally deploy the
database on AIX. We are also looking at cost and security.

We want to be able to conform to our company's security policy and I'm not
sure what files need to be edited to set these up in Linux.
Here some of the things we need to be able to do:

Force users to create an 8 digit alpha numeric "strong" password and not
accept simple passwords or dictionary passwords.
Do not allow users to set a password that was used in the last year and
prevent users from changing a newly created password for 2 days.
When we set a user's password we need it to expire and prompt the user for a
new password upon logging in.
Lock user accounts after 3 unsuccessful attempts to login.
Users must be forced to change their password every 30 days.

Any help or links you could provide me would be appreciated.

Thanks,
Scott



More information about the wplug mailing list