LAN Support Services
LAN Support Services
PC Passwords
Password Changes and Requirements:
From KU's IT Security Office (ITSO):
Password enumeration attacks are becoming more common on all workstations.
Increases in computer hacking and viruses worldwide have caused many systems to become exploited. Hackers often attempt to gain access to a computer by guessing all possible combinations of passwords. Using a modern PC, a hacker can normally break a simple password remotely in less than 60 seconds. Once broken, your password may allow someone to access your files or personal identifier information. As of June 2005, Vice Provost of Information Services has implemented a new Password Policy. All KU Faculty, Staff or Student should be familiar with the new policy. LSS supported customers are also bound by this campus-wide policy.
From LAN Support Services (LSS): All KU faculty, staff, and GTA's who utilize Novell login and are supported by LAN Support Services are prompted to change their passwords every 180 days. This keeps your data safe and keeps LSS in compliance with ITSO guidelines.
One of the issues LSS user's encounter is that when prompted to change the password, the Windows workstation password does not change when the user's network (Novell) password changes. This occurs if the user changes the password at the initial prompt of "You have X grace logins, do you want to change your password?" The user's account then becomes "unsynchronized" the next time the user attempts to log in.
How to change your Novell and system passwords when prompted so they stay properly synchronized:
Do NOT change the password when you first get a prompt that says "You have x grace logins, Would you like to change your password?"
Answer NO at this prompt, from the desktop then perform the following steps:
1. (Once logged in) simultaneously press the CTRL-ALT-DELETE keys
2. Select CHANGE PASSWORD.
3. Type in old password, the password just used to log you in to your system
4. Tab to the next field and type in new password that meets the password hardening criteria of.
--At least 8 characters
--At least 1 Upper case letter.
--At least 1 lower case letter.
--At least 1 number.
--At least 1 special character (#$*!...)
--Must not contain username, or any part of their name.
--Is not a password which has been used before.
5. Tab again, confirm the new password, press, OK and you should receive a confirmation that the passwords successfully changed.
If a user encounters difficulty in changing their password, assistance is available Monday through Friday 8 AM to 5 PM by calling 864-0400.




top