1. Æнº¿öµå º¯°æ ³¯Â¥ È®ÀÎ
# chage -l $(id)
Last password change : Aug 27, 2019 <== This
Password expires : never
Password inactive : never
Account expires : never
Minimum number of days between password change : 0
Maximum number of days between password change : 99999
Number of days of warning before password expires : 7
2. Æнº¿öµå º¹À⼺ ¼³Á¤
file :
/etc/pam.d/system-auth-ac - pam_cracklib.so
/etc/pam.d/password-auth-ac - pam_cracklib.so
* Option ¼³¸í
- minlen : Æнº¿öµåÀÇ ÃÖ¼Ò ±æÀÌ, 6ÀÚ ÀÌÇϷδ ¼³Á¤ÇÒ ¼ö ¾øÀ½
- dcredit : ¼ýÀÚ°¡ ¹Ýµå½Ã Æ÷ÇԵǾî¾ß ÇÑ´Ù´Â ¿É¼Ç
- ucredit : ´ë¹®ÀÚ°¡ ¹Ýµå½Ã Æ÷ÇԵǾî¾ß ÇÑ´Ù´Â ¿É¼Ç
- lcredit : ¼Ò¹®ÀÚ°¡ ¹Ýµå½Ã Æ÷ÇԵǾî¾ß ÇÑ´Ù´Â ¿É¼Ç
- ocredit : Ư¼ö¹®ÀÚ°¡ ¹Ýµå½Ã Æ÷ÇԵǾî¾ß ÇÑ´Ù´Â ¿É¼Ç
ex)
password requisite pam_cracklib.so type= lcredit=-1 dcredit=-1
ocredit=-1 retry=3
3. Æнº¿öµå º¯°æ Áֱ⠼³Á¤
file : /etc/login.defs
# PASS_MAX_DAYS Maximum number of days
a password may be used.
# PASS_MIN_DAYS Minimum number of days
allowed between password changes.
# PASS_MIN_LEN Minimum
acceptable password length.
# PASS_WARN_AGE Number
of days warning given before a password expires.