Home > Ask the AS/400 Experts > Questions & Answers > What is a bulletproof password?
Ask The iSeries 400 Expert: Questions & Answers
EMAIL THIS

What is a bulletproof password?

Dan Riehl EXPERT RESPONSE FROM: Dan Riehl

Pose a Question
Other iSeries 400 Categories
Meet all iSeries 400 Experts
Become an Expert for this site
>
QUESTION POSED ON: 19 September 2002
What is a bulletproof password?

Can you tell me a little about bulletproof passwords?

>

There are many considerations when dealing with password security. And no plan is ever bulletproof.

General iSeries password recommendations.

-- Make the password hard to guess, but easy to remember. If you place too many weird restrictions on password creation, the users will get frustrated, and will end up writing their passwords down.
-- Require a digit in the password.
-- Password length from 6-8 characters.
-- Expire passwords periodically, 30 days or 60 days.
--Set your system values to disable a user profile after three bad login attempts.
-- When enabling a profile(after being disabled) or when creating a new profile, set the password to expired, so that when the user signs on for the first time, they are prompted to change their password to a value only they know.

Restrictions that must be in place.

-- Never tell anyone your password, not your boss, and not the system security officer.
-- Never share a user profile with another user, even when you go away on vacation.
-- Passwords are never written down, or recorded anywhere.
-- Be on alert for network sniffers that can catch un-encrypted passwords. That includes securing the iSeries Communications trace in SST (System service tools).
-- Make sure that there is no program attached to the system value PWDVLDPGM (Password Validation program). A program registered here can catch all changed passwords and record them.

==================================
MORE INFORMATION ON THIS TOPIC
==================================

The Best Web Links: Tips, tutorials and more.

Search400.com's targeted search engine: Get relevant information on security.

Ask your systems management questions--or help out your peers by answering them--in our live discussion forums.

Read this Search400.com Featured Topic: Secure your iSeries


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



Search and Browse the Expert Answer Center
Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
Browse our Expert Advice



iSeries Networking - Printing, Remote Access, TCP/IP
HomeNewsTopicsITKnowledge ExchangeTipsBlogsAsk the ExpertsMultimediaWhite PapersProducts
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 1999 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts