Password Policies

Password policies are enabled by default on fresh installations.

It can be configured in /etc/opt/eranger/ernger-server.cfg

Setting

Description

enforce_password_policy

Configures if password policy is enforced. If enabled, the password can only be set to compliant passwords and the user is forced to set a new password upon login if the current password is not compliant.

Default: true

password_min_length

Minimum length of passwords. Should not be lowered significantly below 12.

Default: 12

password_require_upper

Requires at least one uppercase character.

Default: true

password_require_digit

Requires at least one digit.

Default: true

password_require_special

Requires at least one special character from !@#$%^&*()-_=+[]{};:,.<>/?|~\'`".

Default: true

password_min_classes

Minimum number of character classes that have to be present in the password (lowecase, uppercase, digit, special).

Default: 3

password_disallow_username

Disallows the username to be part of the password.

Default: true