Implementing Password Security Rules
3 min
This functionality portrays the configuration of system usage passwords, providing a higher level of security with the usage of different characters.
β οΈ Attention!
This security policy is not available for LDAP users.
Default rules when enabling Security Policy:
- Minimum of 8 characters;
- At least one lower case letter;
- At least one uppercase letter;
- At least a number;
- At least one special character (symbol);
- The password cannot be the same as the last 3 passwords used;
- The password expires in 3 months.
Procedure
- Access the main menu System > Settings > Policy Settings;
- Enable the "Enable password security policy" key;
- In the "Password force" field the manager must define the minimum number of password characters (minimum value of 8) and it will contain requirements of: uppercase letter, lower case, numbers, and symbols;
- Define the number of previous passwords in which the new one cannot be equal, in the limiter "The new password cannot be the same as the previous ones";
- For new users, the password change can be defined by clicking on the "Require password change on the first login" key .
- In the "Password expiration" field define the time to expire the password;
- For users who are already in operation, it is possible to force the password change of the new configuration, from the next login, click on the key "Force password change at next login for all users"
- Click on "Saveβ.
β οΈ Attention!
The System notifies the user 3 days before the expiration of the current password, making this alert through a message in a text box that will appear once a day when logging into the System. After the password expires, the user is automatically sent to the user profile screen with open password exchange panel (you can only use the system again if you make a password change).