What does requiring password complexity help prevent?
Which character sets are commonly required for password complexity?
Why is a longer password more secure?
What is the purpose of setting a maximum password age?
Why might an organization store previous user passwords?
What does a lockout period after invalid login attempts help prevent?
An organization requires passwords to include uppercase letters, lowercase letters, numbers, and special characters. What policy is this enforcing?
A company wants to prevent users from using the same password repeatedly. What should they configure?
A user tries to log in five times with incorrect passwords and is temporarily unable to attempt to log in. What security feature is being used?
Why might NIST recommend against requiring password changes at fixed intervals?