系统版本:CentOS release 6.9 (Final)
1.设置密码复杂度
vim /etc/pam.d/system-auth
password requisite /lib/security/$ISA/pam_passwdqc.so min=disabled,24,16,8,10 passphrase=3 max=40 enforce=everyone retry=3 similar=deny
样本:
#%PAM-1.0
# This file is auto-generated.
# User changes will be destroyed the next time authconfig is run.
auth required pam_env.so
auth sufficient pam_fprintd.so
auth sufficient pam_unix.so nullok try_first_pass
auth requisite pam_succeed_if.so uid >= 500 quiet
auth required pam_deny.so
account required pam_unix.so
account sufficient pam_localuser.so
account sufficient pam_succeed_if.so uid < 500 quiet
account required pam_permit.so
#password requisite pam_cracklib.so try_first_pass retry=3 type=
#password requisite pam_cracklib.so retry=5 difok=3