In this session we will generally move through three sections
1) Automation of the lab environment
a) the why
b) the how
2) External audit and password complexity rules
3) Windows password cracking when the minimum length is set at 12 char
40. BIG PARTNER
PARTNER
SENIOR AUDIT MGR
JUNIOR AUDITOR
Recruits Partners
Runs biggest account
Signs off on all accounts
Smart people
pragmatic project managers
make things happen
Data collector -
“just (blindly) following the proces”
41. Out-the-box settings are usually something like
Be at least six characters in length.
Contain characters from three of the following four categories.
English uppercase letters (A through Z)
English Lowercase letters (a through z)
Base 10 digit (0 through 9)
Non-alphabetic characters ( !,@,#,$, %&,*)
Then minimum length is usually upped to 8 or 9 and a password history of 6 , 12 or 24 is set to
prevent reuse of an old password and a maximum age of 45 days set
42.
43. Out-the-box settings are usually something like
Be at least six characters in length.
Contain characters from three of the following four categories.
English uppercase letters (A through Z)
English Lowercase letters (a through z)
Base 10 digit (0 through 9)
Non-alphabetic characters ( !,@,#,$, %&,*)
Then minimum length is usually upped to 8 or 9 and a password history of 6 , 12 or 24 is set to
prevent reuse of an old password and a maximum age of 45 days set
I opted for