Policies
Integrated Information Technology Services (IITS)
Password Security
Legacy Policy
POLICY:
• Passwords are required for all systems including SCT Banner, network use, and email.
• Network passwords are administered by the Infrastructure department of IITS. An Active Directory, or network, password is required for all users using network resources in either computer labs, offices, and or other campus locations. Passwords must be at least eight (8) characters in length. Passwords should incorporate a combination of uppercase letters, lower case letters, numbers and special characters. Faculty and staff passwords must be changed every 120 days, and users may not reuse a previously used password.
• Passwords cannot be written down and left in an unsecured area (i.e. on a desk, in an unlocked drawer, etc.)
• The Computer Help Desk will not reset any password, or provide any password over the phone without sufficient user authentication. In most cases users must instead reset passwords using our secure password website.
SCOPE:
Any person assigned a password to any Utica College service.
REASON FOR POLICY:
In order to better serve the campus community it is imperative that IITS set up certain security policies in order to ensure stable computer and network resources.
PROCEDURE:
Any user found leaving passwords unsecured or using weak passwords (i.e. easily guessed passwords) will be required to immediately change all UC system passwords.
RESPONSIBILITY:
All users must use and protect all passwords.
ENFORCEMENT:
Enforcement of Utica College policies is the responsibility of the office or offices listed in the “Resources/Questions” section of each policy. The responsible office will contact the appropriate authority regarding faculty or staff members, students, vendors, or visitors who violate policies.
Utica College acknowledges that College policies may not anticipate every possible issue that may arise. The College therefore reserves the right to make reasonable and relevant decisions regarding the enforcement of this policy. All such decisions must be approved by an officer of the College (i.e. president, vice president for academic affairs, or vice president for financial affairs).
RESOURCES/QUESTIONS:
Direct any questions to the Director of IITS Operations.
Due to the rate at which technology changes, this policy may not anticipate every issue that may arise. As a result, IITS reserves the right to enact additional restrictions, or modify the existing restrictions as needed while approval of those changes are pending.
Please note that other Utica College policies may apply or be related to this policy. To search for related policies, use the Keyword Search function of the online policy manual.
Effective Date: |
Unknown |
Date Last Revised: |
03/02/2011 |
Volume 5
Information Technology
5.1 Downtime
Legacy Policies
L.02 Software Policy
L.03 Email Policy
L.05 Password Security
L.06 Account Policies
L.08 Improper Use Policy
Working Policies
W.02 Computer Passwords
