From 08dc48ec77f8c2a82dfd1ac902a7bec57da84c38 Mon Sep 17 00:00:00 2001 From: Dan Brodjieski Date: Mon, 4 Mar 2024 15:39:54 -0500 Subject: [PATCH] fix: removed duplicate policies Removed password policies from the pwpolicy.xml file that can be set with a profile. Issue #373 --- includes/pwpolicy.xml | 92 +++---------------------------------------- 1 file changed, 5 insertions(+), 87 deletions(-) diff --git a/includes/pwpolicy.xml b/includes/pwpolicy.xml index 3e59a98c..6f468bb8 100644 --- a/includes/pwpolicy.xml +++ b/includes/pwpolicy.xml @@ -4,19 +4,6 @@ policyCategoryAuthentication - - policyContent - (policyAttributeFailedAuthentications < policyAttributeMaximumFailedAuthentications) OR (policyAttributeCurrentTime > (policyAttributeLastFailedAuthenticationTime + autoEnableInSeconds)) - policyIdentifier - Authentication Lockout - policyParameters - - autoEnableInSeconds - 300 - policyAttributeMaximumFailedAuthentications - 3 - - policyContent policyAttributeLastAuthenticationTime > policyAttributeCurrentTime - (policyAttributeInactiveDays * 24 * 60 * 60) @@ -29,20 +16,6 @@ - policyCategoryPasswordChange - - - policyContent - policyAttributeCurrentTime > policyAttributeLastPasswordChangeTime + (policyAttributeExpiresEveryNDays * 24 * 60 * 60) - policyIdentifier - Password Expires after 60 days - policyParameters - - policyAttributeExpiresEveryNDays - 60 - - - policyCategoryPasswordContent @@ -56,39 +29,6 @@ 1 - - policyContent - policyAttributeLastPasswordChangeTime < policyAttributeCurrentTime - (policyAttributeMinimumLifetimeHours * 60 * 60) - policyIdentifier - Minimum Password Lifetime - policyParameters - - policyAttributeMinimumLifetimeHours - 24 - - - - policyContent - policyAttributePassword matches '.{15,}+' - policyIdentifier - Must be at least 15 characters - policyParameters - - minimumLength - 15 - - - - policyContent - policyAttributePassword matches '(.*[0-9].*){1,}+' - policyIdentifier - Must have at least 1 numeric value - policyParameters - - minimumNumericCharacters - 2 - - policyContent policyAttributePassword matches '(.*[a-z].*){1,}+' @@ -102,37 +42,15 @@ policyContent - policyAttributePassword matches '(.*[A-Za-z].*){1,}+' + policyAttributeLastPasswordChangeTime < policyAttributeCurrentTime - (policyAttributeMinimumLifetimeHours * 60 * 60) policyIdentifier - Must have at least 1 Letter + Minimum Password Lifetime policyParameters - minimumAlphaCharacters - 1 - - - - policyContent - policyAttributePassword matches '(.*[^a-zA-Z0-9].*){1,}+' - policyIdentifier - Must have at least 1 special characters - policyParameters - - minimumSymbols - 1 - - - - policyContent - none policyAttributePasswordHashes in policyAttributePasswordHistory - policyIdentifier - Cannot match the last 5 passwords - policyParameters - - policyAttributePasswordHistoryDepth - 5 + policyAttributeMinimumLifetimeHours + 24 - \ No newline at end of file + \ No newline at end of file