password policy

password policy

This is probably asked in the past, but I could not find solution to that question:
1. Is it possibly to enforce password policy :  expire in number of days, or have mininum number of characters set.
 
2.
Is it possible to integrate system authentication with Active Directory,
LDAP, Shibboleth, or other SAML-based service for user authentication and
password management?