Previous Topic: Passwords and Password PhrasesNext Topic: Password Control Options


About Passwords and Password Phrases

Passwords control access to user accounts in your organization. Unless you have devices to provide additional levels of user authentication (for example, voice or image recognition), passwords are the only means of providing user account protection for your environment.

In addition to a password, ACIDs can also have an optional password phrase for applications that support them.

After you have completed product training and are familiar with the CA Top Secret controls for password administration, develop your strategies for password usage. These strategies should include a combination of password and password phrase controls at the organization level (through the control options) and at the user level (through user ACID attributes). Be aware of the required controls built into CA Top Secret which affect your password and password phrase strategy.

The key to an effective password strategy is to choose controls that allow users to easily remember their passwords so that the passwords are not written down, but are not easily guessed.