An organization is implementing a control for the Account Monitoring and Control CIS Control, and have set the Account Lockout Policy as shown below. What is the risk presented by these settings?
I think the key here is to understand how the lockout policy interacts with password complexity and length requirements. That could be the key to identifying the main risk.
Okay, let me see. The All users group is likely used to grant access to common features and functionality that all users should have access to. I'm guessing the answer is D, Console and common features.
Once locked, accounts can't be unlocked? Wow, that's like a one-way ticket to the password graveyard. Guess the IT team will be busy resetting passwords all day.
Password length and complexity reduced? Well, that's one way to make it easier for everyone to remember their passwords. Maybe they should just use '12345' instead.
Okay, so legitimate users might get locked out? Sounds like a great way to keep them from accessing the resources they need. Productivity is overrated anyway.
Delpha
6 months agoMalinda
6 months agoAdolph
6 months agoLina
7 months agoLenna
7 months agoJannette
7 months agoEdwin
7 months agoGenevieve
8 months agoIrene
8 months agoQueen
8 months agoChauncey
8 months agoHermila
8 months agoKarol
8 months agoLigia
8 months agoDan
1 year agoCarey
1 year agoTamekia
11 months agoDaren
11 months agoKenneth
11 months agoFelicidad
12 months agoJanessa
1 year agoJesusita
1 year agoBarney
12 months agoCarey
12 months agoUlysses
1 year agoBarrie
1 year agoGail
1 year agoMirta
1 year agoHelene
1 year agoHelene
1 year agoCharlesetta
1 year ago