Could you please clarify the rationale behind limiting the maximum password length to 64 characters in NVIDIA BMC?

We observed that the maximum password length supported in NVIDIA BMC is restricted to 64 characters.

Could you please confirm:

  1. Whether this limit is defined by NVIDIA security policy?

  2. If it originates from OpenBMC/PAM (pam_ipmicheck) constraints?

  3. Whether it is due to IPMI protocol field size limitations?

  4. If increasing beyond 64 chars may impact compatibility (Redfish/IPMI/PLDM)?