Password Quality Audit

From: Trevin (tedgeworth_at_sensysmedical.com)
Date: 03/30/04


Date: Tue, 30 Mar 2004 09:15:05 -0800

I am trying to find a way to create a report of weakest
and strongest passwords on our Win2k domain. I tried
using L0phtCrack software on the DC and as sniffing
software, but Win2k servers apply hash algorithms to all
passwords, so the report was very incomplete. I don't
want to know the passwords, I just want to generate a
report showing the relative quality levels of passwords
(by considering length, char types, and dictionary
words). Does anybody know if MS or anybody else provides
a such a product?

Thanks, in advance, for your help.

Trevin



Relevant Pages

  • Re: Password Quality Audit
    ... Have you been able to sniff the passwords in a w2k environment ... > and strongest passwords on our Win2k domain. ... > using L0phtCrack software on the DC and as sniffing ... so the report was very incomplete. ...
    (microsoft.public.win2000.security)
  • Re: Testing large networks
    ... It could be at the max. 5 page report. ... I am sure you will find few 100s of weakness in Network that may be in terms ... management is investing to get pen-test report, coz they would like to know by investing in which area/device they can feel more secure. ... >default passwords, missing patches, well known open trojan ports ...
    (Pen-Test)
  • Re: Linked files and file protection.
    ... > Report workbook. ... > password for each of the 50 linked files when opened with links ... > passwords embedded. ... But my macro skills are not quite up to this! ...
    (microsoft.public.excel.misc)
  • Re: Auditing software
    ... > I need a recomendation on good software to audit the user ... > passwords on our win2k domain. ... I have used LOpth crack ...
    (microsoft.public.security)
  • Re: Password change report
    ... passwd -sa ... James Coldwind wrote: ... > I'm looking for a tool that will report on when passwords were last changed ...
    (comp.unix.solaris)