Ensure that your Resource Access Management (RAM) users are using a strong password policy that enforces the prevention of reusing RAM user passwords. Trend Vision One™ provides you with the capability to define your own password history check policy upon enabling this Trend Vision One™ - Cloud Posture rule. You can set the **PasswordReusePrevention** parameter to a value between 1 and 24.
Enforcing RAM user passwords strength, pattern, and rotation is vital when it comes to maintaining the security of your Alibaba Cloud account. Having a strong password policy in use will significantly reduce the risk of password-guessing methods and brute-force attacks. The default RAM password policy does not prevent password reuse.
Audit
To determine if your password policy enforces the prevention of reusing RAM user passwords, perform the following operations:
Remediation / Resolution
To enforce the prevention of reusing RAM user passwords, perform the following operations:
References
- Alibaba Cloud Documentation
- Overview of security settings
- Configure a password policy for RAM users
- Alibaba Cloud CLI Documentation
- GetPasswordPolicy
- SetPasswordPolicy