R132. Passphrases with at least 4 words

This document contains the details of the security requirements related to the definition and management of access credentials in the organization. This requirement establishes the importance of defining passphrases with at least 4 words and allowing them to be more than 64 characters long.


The system must require passphrases to be at least 4 words long and allow them to have 64 characters or more .


Passwords are identity assertion elements that can be easily forgotten. Passphrases are sequences of words that are longer than passwords but are also easier to remember. Thus, systems should enforce the usage of passphrases at least 4 words long and allow them to have 64 characters or more.


