SRS-086 Enforce strong password policies (min. 12 characters, complexity rules, expiration policies).
Identifier
SRS-086
Software System
- Authentication Service
 
Category
- Security
 
Description
In the setup, users must send a username and password to the /login endpoint to obtain an access token. Therefore, the medical device does rely on password-based authentication at a fundamental level.
Derived from PRS
PRS-9F2: Cybersecurity & continuous threat detection