Hi Team,
Currently i am changing the AEM6.5 default admin account password every month using below process . Is this recommended & any issue if we frequently changing the "admin" password for authors and publish servers?
Author instance :
User User admin console the search for "admin" then change the password
publish instance
http://hostname:4503/crx/explorer/index.jsp
change the password
Regards
Vara
Solved! Go to Solution.
Views
Replies
Total Likes
Hello @varaande
Regularly changing passwords is generally considered a good security practice to mitigate the risks associated with unauthorized access. However, the frequency at which you should change passwords, including the admin password for AEM (Adobe Experience Manager), depends on a variety of factors and should be balanced with usability and operational efficiency.
Here are some points to consider:
1. Security Enhancement: Regular password changes reduce the window of opportunity for attackers to gain unauthorized access using compromised credentials.
2. Compliance: In some industries and organizations, frequent password changes are required to comply with security regulations and standards.
Considerations and Potential Issues:
1. Administrative Overhead: Frequent password changes can increase administrative workload
2. Communication: Regularly informing users about password changes can be time-consuming.
Recommendations:
1. Risk Assessment: Evaluate the risk level of your AEM instances. Critical systems might warrant more frequent changes than non-critical ones.
2. Balanced Frequency: Determine a reasonable password change frequency that balances security and usability. Monthly changes might be suitable for some organizations, but others might find quarterly changes more appropriate.
We do not expect any issues with the change of admin passwords.
But, please do raise an Adobe ticket to check on the recommendations for the same
Hi @varaande
As per adobe recommendation admin password for accessing crx and the webconsole should be changed after installation to make sure the environment is kept secure.
Please find the security checklist link
As per my understanding there is no issue with updating the password frequently , usually organizations demands password rotation and in that case this process is followed quarterly or in case if any password is compromised immediate changing is recommended.
Hello @varaande
Regularly changing passwords is generally considered a good security practice to mitigate the risks associated with unauthorized access. However, the frequency at which you should change passwords, including the admin password for AEM (Adobe Experience Manager), depends on a variety of factors and should be balanced with usability and operational efficiency.
Here are some points to consider:
1. Security Enhancement: Regular password changes reduce the window of opportunity for attackers to gain unauthorized access using compromised credentials.
2. Compliance: In some industries and organizations, frequent password changes are required to comply with security regulations and standards.
Considerations and Potential Issues:
1. Administrative Overhead: Frequent password changes can increase administrative workload
2. Communication: Regularly informing users about password changes can be time-consuming.
Recommendations:
1. Risk Assessment: Evaluate the risk level of your AEM instances. Critical systems might warrant more frequent changes than non-critical ones.
2. Balanced Frequency: Determine a reasonable password change frequency that balances security and usability. Monthly changes might be suitable for some organizations, but others might find quarterly changes more appropriate.
We do not expect any issues with the change of admin passwords.
But, please do raise an Adobe ticket to check on the recommendations for the same
Views
Like
Replies