SRS-086 Enforce strong password policies (min. 12 characters, complexity rules, expiration policies).
Identifier
SRS-086
Software System
- Authentication Service
Category
- Security
Description
In the setup, users must send a username and password to the /login
endpoint to obtain an access token. Therefore, the medical device does rely on password-based authentication at a fundamental level.
Derived from PRS
PRS-9F2
: Cybersecurity & continuous threat detection