19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Safeguard Catalogue - Organisation Remarks<br />

____________________________________________________________________ .........................................<br />

- Intruder attempt reset interval<br />

When this option is active, incorrect attempts at logging into a user account<br />

can be traced back through a specified time period. If the number of<br />

incorrect attempts at logging into a user account within the defined period<br />

exceeds the value set under "Incorrect login attempts", the user account is<br />

disabled (provided that the option titled "Lock account after detection" is<br />

active).<br />

- Lock account after detection<br />

This menu item should always remain active, in order to disable user<br />

accounts for which the maximum permissible number of incorrect login<br />

attempts has been exceeded.<br />

- Intruder lockout reset interval<br />

<strong>The</strong> time interval specified here should always be sufficiently long (> 1<br />

hour), in order to ensure that the reasons for any intruder lockout (i.e.<br />

disabling of a user account) can be ascertained by the system administrator<br />

and the affected user.<br />

Additional controls:<br />

- Have users been informed on how to handle passwords correctly?<br />

- Is the password quality controlled?<br />

- Are password changes mandatory?<br />

- Has every user been provided with a password?<br />

- Has a user template been generated? Have security aspects been taken into<br />

account here?<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!