R3721-F3210-F3171-HP High-End Firewalls Access Control Command Reference-6PW101
169
Minimum password update time: 24 hours
User account idle-time: 90 days
Login with aged password: 3 times in 30 days
Password complexity: Disabled (username checking)
Disabled (repeated characters checking)
# Display the password control configuration information for super passwords.
<Sysname> display password-control super
Super password control configurations:
Password aging: Enabled (90 days)
Password length: Enabled (10 characters)
Password composition: Enabled (1 types, 1 characters per type)
Table 35 Command output
Field Descri
p
tion
Password control Whether the password control feature is enabled
Password aging
Whether password aging is enabled and, if enabled, the aging time
Password length
Whether the minimum password length restriction function is enabled
and, if enabled, the setting
Password composition
Whether the password composition restriction function is enabled
and, if enabled, the settings
Password history
Whether the password history function is enabled and, if enabled,
the setting
Early notice on password expiration
Number of days during which the user is warned of the pending
password expiration
User authentication timeout
Password authentication timeout time
Maximum failed login attempts
Allowed maximum number of consecutive failed login attempts for
FTP and VTY users
Login attempt-failed action
Action to be taken after a user fails to login for the specified number
of attempts
Minimum password update time Minimum password update interval
User account idle-time Maximum account idle time
Login with aged password
Number of times and maximum number of days a user can log in
using an expired password
Password complexity
Whether to check the password complexity, including:
• Checking whether a password contains the username or the
reverse of the username
• Checking whether a password contains any character that is
repeated consecutively three or more times
display password-control blacklist
Syntax
display password-control blacklist [ user-name name | ip ipv4-address | ipv6 ipv6-address ] [ | { begin
| exclude | include } regular-expression ]