Password Policy Properties
Set password properties to enforce your transit agency password policies.
| Property | Description |
|---|---|
| Specify the minimum length, in characters, of a valid password. Enter 0 to allow empty passwords. The default value is 8. | |
| Specify the maximum length, in characters of a valid password. Enter 0 for no maximum length. | |
| If selected, only alphanumeric passwords are allowed. Otherwise, passwords can contain symbol characters such as % and ^. | |
| If selected, passwords are case sensitive. | |
| If selected, user names are case sensitive. | |
| If selected, passwords must contain at least one letter and one number. | |
|
Specify character types that must be included in all passwords. This property
depends on other password policy context properties. Options are:
By default, all four character types must be used. |
|
| If selected, passwords cannot contain the user's login name as a
substring. Note: This property does not apply if users log in with their user IDs
(numeric characters). For more information, contact your Trapeze representative. |
|
| Specify how many days before a password must be changed on the next login. | |
| Specify how many days prior to reaching the Maximum Password Age the system will send a warning message to users at login that their password is about to expire. For example, to require users to change passwords monthly and to remind them a week before the password expires, set Maximum Password Age to 30 and Maximum Password Age Warning to 7. | |
| If selected, password policies are checked and enforced each time the user logs in. If the password does not meet the current policy, users are required to change the password immediately. Select this property if you are changing your password policy and want to make sure all users are immediately compliant with the new policy. | |
| Specify the number of failed logins past which the user account is locked. For
example, if you enter 3 for this property, after 3 failed attempts to log in the user
account would be locked. Note: This property only applies to users who are not members
of the Administrator user group. |
|
| Specify the number of previous passwords to remember. When users enter a new password, they cannot repeat passwords in this list. If you specify 0, password history is not enforced. | |
| Specify the minimum number of days before and already used password may be reused. Is you specify 0, passwords may be reused immediately. | |
| Specify the minimum number of seconds before a full security check is performed (including LDAP and built-in policy checks). If you specify 0, a full check is performed on each request. | |
| If selected, when an administrator sets a user's password, that password must be changed the next time the user logs in. | |
| Maximum number of times a password can be changed within a certain time window. | |
| Time window (HH:MM:SS) for users to change their password up to the maximum amount. | |
|
Select the way passwords are hashed and stored in the CoreIdentity table:
|
|
|
Applies to stored passwords in context properties and Service Shell profile files.
Select one of the following values:
|