So I have some pretty industry standard password requirements that I have been tasked with implementing into our BSV. I know I have read many posts talking about these items being possible but wanted to see if anyone has rule examples of any of the following requirements. No sense in reinventing the wheel if not needed.
Password Requirements:
• Password Expires every 90 days
• User cannot use the same password as any of their past 12 passwords
• Account locks after 5 invalid login attempts
• On creation of a new user assign a temporary password that expires in 10 days (meaning if the user has not logged in within ten days with the password expire it).
• Change password on initial login
If you have any ideas/examples regarding the above requirements I am all ears.
Once I have the final setup I look forward to sharing how it was accomplished with the forums.