Issue: Weak Password policy

Description:

A weak password is short, common, a system default, or something that could be rapidly guessed by executing a brute force attack using a subset of all possible passwords.

Remediation:

This can be taken care of within the host application by setting complex passwords. The host application's password policy settings are beyond the ZIETrans application's scope.

However, using ZIETrans Web Express Logon feature, you can integrate ZIETrans application host login with any supported SSO provider. With this, the SSO provider's user account is used to login instead of the host applications user account. Password policy can be configured in the SSO Provider user account configurations, and this will vary depending on the SSO provider considered.

Refer to the below link for more information about enabling Web Express Logon (WEL) in ZIETrans:

Security and Web Express Logon