The objective of this document is to reflect the measures and configurations implemented to comply with the password policy established by Fluid Attacks
. These measures are intended to ensure the strength and protection of passwords used in the system, following recommended security best practices.
In this section, we detail the configurations implemented to comply with the password policy established by Fluid Attacks
. These configurations aim to ensure the strength and protection of passwords used in the system, following recommended security best practices.
Password Configuration in the Terraform file and Terraform reference for further documentation.
Generated passwords must adhere to the organization's secure password policy. This requirement applies to all systems and applications used and managed by Fluid Attacks.
For newly created or reactivated accounts, Fluid Attacks uses randomly generated passwords, even if the system has a "User must change password at next logon" policy implemented.
For these passwords we have chosen to apply this configuration: