FedRAMP Solutions for Government User Guide

Password policies

Password policies contain configurable properties for password expiration, failed sign on attempts, account lockout and other aspects of password and account maintenance. Refer to About the Password Policy Properties in the PingDirectory Server Administration Guide for additional information. Submit your password policy requests through the service request form, accessible from the Support & Community page.

Steps

  1. Complete the following fields:

    • Subject: Enter a description of your request, including the action to be taken.

    • Environment Type: Specify the type of environment affected by this request.

    • Proposed Change Window: Specify the dates or times in which you want the work complete.

  2. From the Capability list, select PingDirectory service requests → Password policies.

  3. In the Password policy name field, provide the name of the password policy you want to add, modify or delete.

  4. Optional: Select the Require secure authentication check box if users with the associated password policy are required to authenticate in a secure manner.

  5. Optional: Select the Require secure password changes check box if users with the associated password policy are required to change their password in a secure manner.

  6. In the Default password storage scheme field, provide the scheme. The default is Salted SHA-256.

  7. In the Password validation field, describe your password validation requirements.

  8. Optional: In the Password expiration field, describe the password expiration rules you need.

  9. Select the Force change on reset check box to force users to change their passwords if they are reset by an administrator, which is considered an administrative password reset.

  10. Select the appropriate description from the Business Priority list:

    • Change needed by deadline to avoid business impact

    • Change modifies existing functionality

    • Change adds new functionality

  11. Enter a description of your request in the Description field.

  12. If you are tracking your request within your organization, enter the tracking ID or ticket number associated with it in the Customer Tracking ID field.

  13. Click Save to submit your request.