Identification and Authentication
Identify users and authenticate identities.
Identification
Identify system users, processes acting on behalf of users, and devices.
Authentication
Authenticate the identities of users, processes, or devices as a prerequisite to allowing access.
Multifactor Authentication
Use multifactor authentication for access to privileged accounts and for network access to non-privileged accounts.
Replay-Resistant Authentication
Employ replay-resistant authentication mechanisms.
Identifier Reuse
Prevent reuse of identifiers for a defined period.
Identifier Inactivity
Disable identifiers after a defined period of inactivity.
Password Complexity
Enforce a minimum password complexity and change of characters when new passwords are created.
Password Reuse
Prohibit password reuse for a specified number of generations.
Temporary Passwords
Allow temporary password use for system logons with an immediate change to a permanent password.
Cryptographic Password Storage
Store and transmit only cryptographically protected passwords.
Authenticator Feedback Obscuring
Obscure feedback of authentication information.