We are getting ready to update our campus security policy which has a
section on password rules.  There is a "discussion" brewing that is
coming down to Active Directory rules and OS/500 rules for setting
passwords. The Active Directory crowd wants to have the rules set in
ways that Microsoft can enforce but that does not match the rules that
OS/400 can enforce (short of writing our own exit program and enforce
any rules we want). The rules being proposed 

 

                Must be at least 4 characters 

                Must be changed every 180 days

                Can't change your password more than once a day

                Must contain at least 3 of the following 4 

                                One lower case alpha character (a-z)

                                One upper case alpha character (A-Z)

                                One numeric character (0-9)

                                One special character
(!@#$%^&*()=+{}[]|\:;"'<>,.?/) <mailto:!@#$%^&*()=+{}[]|\:;"'<>,.?/)> 

                

OS/400 (at V5R3) can't handle the last rule (unless we write our own
routine). I have three questions. First, to those of you on V5R4 are
there any additional rules that OS/400 has for checking passwords?
Second, have you turned on long passwords or are you still using 10?
Third, what are your companies password policies?

 


This thread ...

Follow-Ups:

Follow On AppleNews
Return to Archive home page | Return to MIDRANGE.COM home page

This mailing list archive is Copyright 1997-2026 by midrange.com and David Gibbs as a compilation work. Use of the archive is restricted to research of a business or technical nature. Any other uses are prohibited. Full details are available on our policy page. If you have questions about this, please contact [javascript protected email address].

Operating expenses for this site are earned using the Amazon Associate program and Google Adsense.