NIST SP 800-171 & CMMC 2.0 3.5.8 Requirement:
Prohibit password reuse for a specified number of generations.
NIST SP 800-171 & CMMC 2.0 3.5.8 Requirement Explanation:
The reuse of passwords can greatly diminish the effectiveness of passwords.
Example NIST SP 800-171 & CMMC 2.0 3.5.8 Implementation:
Configure your user accounts to prevent the reuse of passwords after a specified number of generations (e.g., 12 generations). For Windows systems this can be enforced using group policy or Microsoft EndPoint Manager. Our information security policy template defines password reuse policies.
NIST SP 800-171 & CMMC 2.0 3.5.8 Scenario(s):
- Scenario 1:
John needs to set a new password for his account. He enters a password that he used earlier in the year. Because of his organization's password reuse policy he receives an error message and is forced to come up with a new password.
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you