Manage Password Policies
Password policies are sets of security decisions you make and apply to different user accounts according to security policies in your company. These choices include items such as the number of days a password is valid and the maximum and minimum length of a password.
Use password policies to streamline security operations when adding new users. Instead of adding individual policies for each user, you create one password policy and apply it to all users who require the same access.
A password policy is applied to a new user or when the password is changed on an existing user.
You can apply a password policy only to internal user accounts. This provides you the greatest flexibility in maintaining security policies.
- Valid for 10 days
- Requires a minimum of 10 characters and maximum of 20 characters
- Requires default password change after the initial log in
- Maintains three passwords in history so the user cannot reuse them
- Must use at least two special characters
In this example, the system administrator gives the user a user name and password. The user logs in to Secure Proxy and is prompted to change the password. If the user fails to provide a password with at least 10 and no more than 20 characters, or without at least two special characters, Secure Proxy prompts the user for corrections. After all conditions in the password policy are met, the new password is saved and the user is allowed access.
Each user account can have only one password policy associated with it, but one password policy can be applied to multiple user accounts.