10.02.2013 Views

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Command<br />

Description<br />

Manages<br />

the<br />

policy<br />

controlling<br />

the<br />

minimum<br />

number<br />

of<br />

non-alphabetic<br />

(numeric)<br />

characters<br />

allowed<br />

in<br />

a<br />

password.<br />

As<br />

the<br />

administrator,<br />

you<br />

can<br />

apply<br />

this<br />

policy<br />

to<br />

a<br />

specific<br />

user<br />

or<br />

apply<br />

the<br />

policy<br />

globally<br />

to<br />

all<br />

users<br />

listed<br />

in<br />

the<br />

default<br />

registry.<br />

The<br />

default<br />

setting<br />

is<br />

1.<br />

policy<br />

set<br />

max-password-repeated-chars<br />

{|unset}<br />

[-user<br />

]<br />

policy<br />

get<br />

max-password-repeated-chars<br />

[-user<br />

]<br />

Manages<br />

the<br />

policy<br />

controlling<br />

the<br />

maximum<br />

number<br />

of<br />

repeated<br />

characters<br />

allowed<br />

in<br />

a<br />

password.<br />

As<br />

the<br />

administrator,<br />

you<br />

can<br />

apply<br />

this<br />

policy<br />

to<br />

a<br />

specific<br />

user<br />

or<br />

apply<br />

the<br />

policy<br />

globally<br />

to<br />

all<br />

users<br />

listed<br />

in<br />

the<br />

default<br />

registry.<br />

The<br />

default<br />

setting<br />

is<br />

2.<br />

policy<br />

set<br />

password-spaces<br />

{yes|no|unset}<br />

[-user<br />

]<br />

policy<br />

get<br />

password-spaces<br />

[-user<br />

]<br />

Manages<br />

the<br />

policy<br />

controlling<br />

whether<br />

a<br />

password<br />

can<br />

contain<br />

spaces.<br />

As<br />

the<br />

administrator,<br />

you<br />

can<br />

apply<br />

this<br />

policy<br />

to<br />

a<br />

specific<br />

user<br />

or<br />

apply<br />

the<br />

policy<br />

globally<br />

to<br />

all<br />

users<br />

listed<br />

in<br />

the<br />

default<br />

registry.<br />

The<br />

default<br />

setting<br />

is<br />

unset.<br />

Default<br />

policy<br />

parameter<br />

values<br />

The<br />

following<br />

table<br />

lists<br />

the<br />

policy<br />

parameters<br />

and<br />

the<br />

default<br />

values:<br />

Parameter<br />

Default<br />

Value<br />

min-password-length<br />

8<br />

min-password-alphas<br />

4<br />

min-password-non-alphas<br />

1<br />

max-password-repeated-chars<br />

2<br />

password-spaces<br />

not<br />

set<br />

To<br />

create<br />

the<br />

password<br />

policy<br />

behavior<br />

found<br />

in<br />

earlier<br />

releases<br />

of<br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong>,<br />

apply<br />

the<br />

unset<br />

option<br />

to<br />

each<br />

of<br />

the<br />

five<br />

password<br />

parameters<br />

listed<br />

above.<br />

Valid<br />

and<br />

invalid<br />

password<br />

examples<br />

The<br />

following<br />

table<br />

illustrates<br />

several<br />

password<br />

examples<br />

and<br />

the<br />

policy<br />

results<br />

based<br />

on<br />

the<br />

default<br />

values<br />

of<br />

the<br />

five<br />

pdadmin<br />

parameters:<br />

Example<br />

Result<br />

password<br />

Not<br />

valid:<br />

must<br />

contain<br />

at<br />

least<br />

one<br />

non-alphabetic<br />

character.<br />

pass<br />

Not<br />

valid:<br />

must<br />

contain<br />

at<br />

least<br />

8<br />

characters.<br />

passs1234<br />

Not<br />

valid:<br />

contains<br />

more<br />

than<br />

two<br />

repeated<br />

characters.<br />

12345678<br />

Not<br />

valid:<br />

must<br />

contain<br />

at<br />

least<br />

four<br />

alphabetic<br />

characters.<br />

password3<br />

Valid.<br />

Chapter<br />

5.<br />

<strong>WebSEAL</strong><br />

security<br />

policy<br />

115

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!