Identification and Authentication (IA)

Prevent reuse of identifiers for a defined period.


Login

Identification and Authentication (IA)

Disable identifiers after a defined period of inactivity.


Login

Identification and Authentication (IA)

Enforce a minimum password complexity and change of characters when new passwords are created.


Login

Identification and Authentication (IA)

Level 2

Prohibit password reuse for a specified number of generations.


Login

Identification and Authentication (IA)

Allow temporary password use for system logons with an immediate change to a permanent password.


Login

Identification and Authentication (IA)

Store and transmit only cryptographically protected passwords.


Login

Identification and Authentication (IA)

Obscure feedback of authentication information.


Login

Identification and Authentication (IA)

Identify and authenticate systems and system components, where possible, before establishing a network connection using bidirectional authentication that is cryptographically based and replay resistant.


Login

Identification and Authentication (IA)

Employ automated or manual/procedural mechanisms to prohibit system components from connecting to organizational systems unless the components are known, authenticated, in a properly configured state, or in a trust profile.


Login

Incident Response (IR)

Establish an operational incident-handling capability for organizational systems that includes preparation, detection, analysis, containment, recovery, and user response activities.


Login