Strong Passwords Linux


Though you are generally not in a mood to study on Sunday’s. But here comes a very interesting tip.

Tip to strengthen the password rules so to avoid “dictionary based attacks” on your Linux Box and forcing the users to use complex and NEW passwords rather than using the same old passwords again and again.

Use PAM for the job. As you must be knowing, if you have done the official RHCE Training or RHCSS Training that the main config file for PAM is /etc/pam.d/system-auth

So just couple of parameters in the system-auth file and you are ready to rock.

Check the parameters I have used on my machine. And do check that after the changes the user when trying to change the password to a “weak” password is welcomed with “error”.

Forcing Strong Passwords using PAM

