nerdexam
CompTIA

220-1102 · Question #645

A technician wants to improve password security after several users admitted to using very simple passwords. Which of the following is the best way to resolve this issue?

The correct answer is D. Adding two characters to the minimum password length. To directly address users using 'very simple passwords,' increasing the minimum password length is the most effective method for improving password complexity and strength.

Security

Question

A technician wants to improve password security after several users admitted to using very simple passwords. Which of the following is the best way to resolve this issue?

Options

  • ARequiring four character types
  • BDecreasing the password expiration times
  • CEnabling an automatic lock timer
  • DAdding two characters to the minimum password length

How the community answered

(22 responses)
  • A
    9% (2)
  • B
    14% (3)
  • C
    5% (1)
  • D
    73% (16)

Why each option

To directly address users using 'very simple passwords,' increasing the minimum password length is the most effective method for improving password complexity and strength.

ARequiring four character types

Requiring four character types is good for complexity but increasing length is often a more impactful first step to prevent 'simple' passwords.

BDecreasing the password expiration times

Decreasing password expiration times does not inherently make passwords stronger; users might simply cycle through weak passwords more frequently.

CEnabling an automatic lock timer

Enabling an automatic lock timer is a security measure for unattended systems but does not directly improve the strength or complexity of the passwords themselves.

DAdding two characters to the minimum password lengthCorrect

Increasing the minimum password length directly improves password security by making passwords harder to guess or crack through brute-force attacks. Adding two characters significantly increases the number of possible combinations, making even simple character sets result in much stronger passwords, thereby addressing the issue of users using 'very simple passwords.' This directly enhances complexity and strength.

Concept tested: Password security best practices and configurations

Source: https://learn.microsoft.com/en-us/windows/security/identity-protection/hello-for-business/password-policy-settings

Topics

#Password policies#Password complexity#Account security

Community Discussion

No community discussion yet for this question.

Full 220-1102 Practice