Configure the password requirements that apply to the user passwords.
The default password policy requires that a user password includes at least one uppercase letter, at least one lowercase letter, and at least one digit or special character (printable ASCII non-alphanumeric character).
Note
The default password policy is defined in the server-custom.properties file.
On the Permissions, select the Password Policy tab.
To enforce the use of special characters in user passwords, select Yes in the Enforce special characters drop-down list.
From the Password minimum length drop-down list, select the minimum number of characters to be included in a password.
To force users to change their passwords at regular intervals, from the Enforce password change every drop-down list, select how often the users must change their passwords.
Note
Select Do Not Enforce, if a password change is not required at regular intervals.
From the New password minimum lifetime drop-down list, select the minimum time after which users are prompted to change their passwords.
To prevent users from resetting their passwords to previously used passwords, select the time period from the Prevent password repetition drop-down list.
To temporarily block the failed logon attempts from the same IP address, select Yes from the Prevent brute force attack drop-down list.
To prevent username and password matches, select Yes from the Prevent user equals password drop-down list.
To lockout a user after multiple failed logon attempts, select the number of failed logons after which the user is locked out of the system in the Lockout after failed logins drop-down list.
From the adjacent lock duration drop-down list, select the duration of the lockout period.
Click Save.