08-07-2024 05:49 AM
hi out there
I simply cannot find it - what is the maxium password length Cisco ISE3.2 can handle - both for the local accounts accessing the ISE cluster and the password length ISE can handle when f.ex using the PassiveID connector to configure a remote service accounts password
Solved! Go to Solution.
08-07-2024 06:19 AM
For (non-admin) local accounts in ISE v3.2, i.e. rulesets and policies, the password character range is 4 to 127 here under Administration -> Identity Management -> Settings -> User Authentication Settings -> Password policy:
For local admin accounts in ISE v3.2 (to login to the admin page or use ERS or OpenAPI calls), the password character range is also 4 to 127 characters long. It can be found under Administration->System->Admin Access->Authentication->Password Policy:
I have never tested passive ID or remote logins for anything nearly that long, so I cannot say if those limits are matched, however, up to 127 characters leaves a lot of wiggle room, as I'd doubt most companies go over 20-30 characters these days.
Regards,
David
08-07-2024 06:19 AM
For (non-admin) local accounts in ISE v3.2, i.e. rulesets and policies, the password character range is 4 to 127 here under Administration -> Identity Management -> Settings -> User Authentication Settings -> Password policy:
For local admin accounts in ISE v3.2 (to login to the admin page or use ERS or OpenAPI calls), the password character range is also 4 to 127 characters long. It can be found under Administration->System->Admin Access->Authentication->Password Policy:
I have never tested passive ID or remote logins for anything nearly that long, so I cannot say if those limits are matched, however, up to 127 characters leaves a lot of wiggle room, as I'd doubt most companies go over 20-30 characters these days.
Regards,
David
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide