Enterasys C3 Configuration Guide 5-1
5
Setting User Accounts and Passwords
This chapter describes user account and password management functionality on the Enterasys C3
switches.
User Account and Password Management
User account and password management features allow enhanced control of password usage and
provide additional reporting of usage. Among other characteristics, password length, repetition,
character usage, password sharing, and aging can be configured. In addition, passwords are
protected by encryption.
Account and password feature behavior and defaults differ depending on the security mode of the
switch. For information about security modes and profiles, see Chapter 7, Setting the Security
Mode. See Table 5-1 on page 5-4 for a list of account and password defaults by security mode.
Features
The following is a list of detailed features.
• Passwords are transmitted and stored in a one-way encrypted form, using a FIPS 140-2
compliant algorithm.
• The switch is capable of automatically suppressing or blotting out the clear text representation
of a password on the data entry device. In addition, the switch will ensure that passwords are
not available in clear text to any user, including administrators.
• The switch can maintain and verify a password history (from 0 to 10) per account (see “set
system password history” command on page 5-13).
• The switch is capable of enforcing a configurable minimum period of waiting before an
existing password can be updated, except for the first time update which is required to be
performed when the user logs in for the first time after being assigned a password. (See “set
system password change-frequency” on page 5-13.)
– A password change-frequency interval of zero means there is no restriction on the
frequency of password changes.
– A configured minimum change-frequency interval applies only to users without super-
user privileges attempting to change their own passwords. Users with super-user
privileges may change their passwords at any time.
For information about... Refer to page...
User Account and Password Management 5-1
Commands 5-5