Source | Azure Portal | ||
Display name | Microsoft Managed Control 1327 - Authenticator Management | Password-Based Authentication | ||
Id | 03188d8f-1ae5-4fe1-974d-2d7d32ef937d | ||
Version | 1.0.0 Details on versioning |
||
Versioning |
Versions supported for Versioning: 0 Built-in Versioning [Preview] |
||
Category | Regulatory Compliance Microsoft Learn |
||
Description | Microsoft implements this Identification and Authentication control | ||
Additional metadata |
Name/Id: ACF1327 / Microsoft Managed Control 1327 Category: Identification and Authentication Title: Authenticator Management | Password-Based Authentication - Minimum Complexity Ownership: Customer, Microsoft Description: The information system, for password-based authentication: Enforces minimum password complexity of Case sensitive, minimum of fourteen characters, and at least one each of upper-case letters, lower-case letters, numbers, and special characters; Requirements: Azure requires multifactor authentication for all access. Exceptions exist for assets or accounts that are unable to support smart card authentication, including local accounts and certain network devices. Where passwords exist, Azure exceeds Microsoft requirements and implements a minimum password length of at least fifteen (15) characters and complexity of at least one (1) uppercase, one (1) lowercase, one (1) number, and one (1) special character in accordance with C+AI Security policy. |
||
Mode | Indexed | ||
Type | Static | ||
Preview | False | ||
Deprecated | False | ||
Effect | Fixed audit |
||
RBAC role(s) | none | ||
Rule aliases | none | ||
Rule resource types | IF (2) Microsoft.Resources/subscriptions Microsoft.Resources/subscriptions/resourceGroups |
||
Compliance | Not a Compliance control | ||
Initiatives usage | none | ||
History | none | ||
JSON compare | n/a | ||
JSON |
|