Configuring the Weak Password Dictionary

The weak password dictionary is loaded on the device to verify the weak passwords configured on the device. Weak passwords cannot be created, reducing the risk of brute force cracking.

Security Policy Overview

  • The weak password dictionary file can be loaded.
  • The weak password dictionary file can be cleared.
  • The weak password list can be queried.

Attack Methods

An attacker can crack the device, use administrator rights, and clear the weak password dictionary.

Configuration and Maintenance Methods

  • Loading the weak password dictionary file
    <HUAWEI>load security weak-password-dictionary wkpass.txt
  • Clearing the weak password dictionary file
    <HUAWEI>unload security weak-password-dictionary
  • Querying the weak password list
    <HUAWEI>display security weak-password-dictionary
    ----------------------------------------------------------------------
    Weak Password
    ----------------------------------------------------------------------
     Abc@123
     Admin@123
     Test@123
    ----------------------------------------------------------------------
     Total: 3

Configuration and Maintenance Suggestions

  • You are advised to use the automatic weak password dictionary file upload to the device and then load it.
  • You are advised to periodically update the weak password dictionary file to reduce risks.
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic