Password Policy Best Practices 2021 — To Up Your G Suite Security
Google For Work comes with a lot of great features and capabilities for the end-user. From the end-user perspective, Google For Work allows them to work collaboratively from anywhere, anytime, and any device. But certain gaps bother the IT team from the administration’s point of view. One of such gaps is by enforcing password policy best practices. Google For Work provides a very simple password policy for the maximum length of the password ( https://support.google.com/a/answer/139399?hl=en).
- Complexity of password
- Account Lock
- Historical Password
Manage And Setup Password Policy Best Practices
CloudCodes for G Suite provides administrators to enforce the users to create a complex password with various combinations to ensure password strength is higher. The higher the password strength more it is difficult to break the password by any brute force techniques. CloudCodes for G Suite (gcontrol) provides the following options for complexity
- Minimum password length
- Minimum character classes
- Minimum lowercase characters
- Minimum uppercase characters
- Minimum numeric characters
- Minimum special characters
CloudCodes for G Suite Provides Following Password Policy Best Practices
gControl i.e. CloudCodes for G Suite provides an administrator to enforce locking of user’s account in case multiple attempts of providing the wrong password are given. The administrator can configure
- Number of failed attempts.
- Whether to automatically unlock after 1–24 hours
- Notify administrator or any other user about locking of account
CloudCodes for G Suite provides the administrator the capability for ensuring a user doesn’t provide the previous password. This is a very important requirement from an organization compliance perspective. The administrator can configure the number of previous passwords that cannot be set.
CloudCodes for G Suite provides administrator additional control on user’s password by adding one of the following restrictions
- Disallow username in password
- Disallow digit as first character in password
- Disallow parts of the user’s full name that exceed two consecutive characters in the password
- Exclude keywords in password
One of the most important features of CloudCodes for G Suite password policy is enforcing the expiration of a user’s password. CloudCodes for G Suite (gcontrol) provides an administrator to configure the password expiration interval. The following can be done
- Minimum age of password
- Maximum age of password
- Reminders to be sent for password expiration
Originally published at https://www.cloudcodes.com on September 23, 2021.