Home → IT Items → Password Management → Policy Overview
3.1. Policy Overview
The GIWM policy related to passwords is ITQ-9001 Password Management.
The important take-aways are:
- Passwords must have at least 16 characters (no case or special character requirements unless a certain website or program requires those). Use random words, song lyrics, poetry, or anything else you desire.
- The same password may not be used for any two applications.
- You may not write passwords down on sticky notes and "hide" them under your keyboard. In fact, you may not have your passwords stored in any way that isn't encrypted. Password-protected Excel worksheets and password managers with encrypted databases (see the Knowledge Book on Using KeePass) are acceptable.
- You may not use the “Remember Password” feature of any application.
- You may not share passwords to individual accounts with other people.
We still suggest that you review the policy in full.
This page was: Helpful |
Not Helpful