Skip to main content

Assign password authenticator

You can assign a password authenticator to a user account.

Before you assign a password, review and update password policy settings as needed. For details, see Modify password authenticator settings.

note

If Create Default Password is selected in the General Settings, a new user is automatically assigned a password authenticator by default.

Assign a password authenticator

Complete these steps to assign a password authenticator to a user:

  1. Click > Members > Users. The Users List page appears.
  2. Click the UserID. The User Details page appears.
  3. Click the Authenticators tab. The Authenticators page appears.
  4. Click and select Password from the list. The Edit Password Settings dialog box appears.
  5. Set the new password using one of the following methods:
    • Select Automatic Password Generation to assign a random, system-generated password to the user.

      Automatic Password Generation is disabled if the user does not have an email address.

    • In Enter the user password, enter the password to assign, then confirm it in Confirm Password.

      The password must meet the Password Rules.

  6. Set Password Lifetime. The options are:
    • Default Password Lifetime. Password expires based on the Lifetime Days value in password authenticator settings. For details, see Modify password authenticator settings.
    • Password Never Expires
    • Set Password Expiry Date. Password expires on a specific date.
    • Use Existing Expiry Date. If you do not select another Password Lifetime option, the existing password expiry date is used.
  7. If you select Set Password Expiry Date, complete the following steps:
    1. Click Expiry Date. A calendar pop-up appears.
    2. Select the date when the password must expire. The user is prompted to enter a new password after the password expires.
    3. Click OK. The date appears in Expiry Date.
  8. Optional: Select Change Is Required on First Usage to require the user to change their password at first sign-in.
  9. Optional: Select Clear Any Existing Password History to remove records of previous passwords assigned to the user.
  10. Optional: If the user has an email address, select Email Password to User to send the password by email. You cannot clear this option if you selected Automatic Password Generation.
  11. Click Save.

Validate your changes

After you save, verify the following:

  1. The Password authenticator appears on the user's Authenticators tab.
  2. The selected password lifetime behavior is applied correctly.
  3. If enabled, first sign-in requires a password change.
  4. If enabled, the user receives the password email notification.