Our great sponsors
-
PwnedPasswordsDLL
Open source solution to check prospective AD passwords against previously breached passwords
-
800-63-3
Home to public development of NIST Special Publication 800-63-3: Digital Authentication Guidelines
-
WorkOS
The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.
-
OpenPasswordFilter
An open source custom password filter DLL and userspace service to better protect / control Active Directory domain passwords.
-
ad-password-protection
Active Directory password filter featuring breached password checking and custom complexity rules
-
InfluxDB
Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
Management and compliance sign off can also be difficult for this. One key resource to lean on is NIST's Special Publication 800-63-3 Digital Identity Guidelines, sections 5.1.1.1, 5.1.1.2, and Appendix A (https://pages.nist.gov/800-63-3/). The cliff notes is, NIST says longer is better, complexity is pointless, expirations for no reason makes no sense, and systems should support password managers.
Load DSInternals Powershell Module (Install-Module DSInternals -Force OR https://github.com/MichaelGrafnetter/DSInternals