prevent default passwords for Apache servers


I'm looking for some suggestions on how to prevent end-users in our environment to use default passwords for Apache servers, today we have existing Apache servers with default passwords which is a security risk and i would like to change all these passwords and also make sure new server installations will not have the default easy password.

I'm assuming this is more about educating the users but I want to know if there are also some technical steps I can carry out in order to change all apache passwords rather than going through 1 by 1 and also prevent in future installations.

Thanks !
Who is Participating?
iNc0gConnect With a Mentor Author Commented:
sorry for the late response.
I was referring to the tomcat-users.xml file which apparently you have to modify in order to change the default credentials for the default users.
Dave BaldwinFixer of ProblemsCommented:
That's confusing.  None of the Apache servers I use have passwords or any way to log in to them.  Are you talking about a Control Panel for the server and web hosting?
Kent DyerIT Security Analyst SeniorCommented:
Are you looking to implement a dictionary to prevent entries such as password?
iNc0gAuthor Commented:
this was what I was looking for
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.