windows-itpro-docs
windows-itpro-docs copied to clipboard
Update minimum-password-length.md
Issue: #10390
Two changes: • In the Best Practice section:
- Changed the capitalization from "Set Minimum..." => "Set minimum..."
- In the first line it says "Set minimum password length to at least a value of 14", but on the next line it says "In most environments, an eight-character password is recommended because it's long enough..."; a little bit contradictory with each other. So I changed the minimum password length to 8. Also, as of Aug 2022, this is suggested in the guidelines of NIST SP 800-62 Paragraph 5.1.1.2.
Ref: https://nvlpubs.nist.gov/nistpubs/specialpublications/nist.sp.800-63b.pdf (Page: 23, Section: 5.1.1.2)
Thanks @saif71 for the edit. I'm checking with the content owner, as it looks like there's been some previous discussions around this setting. For example, see #6947 (which references several others).
Thank you for your contribution, @saif71. I approved the proposed change.