From the course: Cisco CCNA (200-301) Cert Prep: 3 Security, Automation, and Programmability

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Password policy elements

Password policy elements

- [Narrator] Password security has many levels. System usernames are usually the same as a user's email address, so guessing that portion isn't difficult. When an attacker gains access to a login prompt and hammers away guessing passwords, it's called an online attack. When an attacker takes a hashed password or other encrypted password and decrypts it, this is called an offline attack. It's for this reason that enterprises create and implement a password policy. This will not only dictate how complex a password must be but also how frequently the password will expire and need to be replaced. Multifactor authentication is also another security measure that can be applied to simple passwords. Passwords are something you know but multifactor will also test against something you have. For example, some systems will allow you to enter a username and password, you will then be texted an additional password that will allow you to proceed with the system. Biometric credentials can be used…

Contents