Manage password blocklist
The password blocklist contains words and strings that users cannot include in their passwords.
Use a blocklist to prevent easy-to-guess values such as company names, product names, or common weak patterns.
Add password blocklist entries
-
Click > Configuration > Password Blocklist. The Password Blocklist page appears.
-
Click Add. The Password Blocklist dialog box appears.
-
In the text box, enter the Password Blocklist Values.
noteYou cannot add duplicate words or strings in the Password Blocklist Values list. For example, if you add
passwordto the blocklist, users cannot usepasswordanywhere in their password. -
Press <return> to enter each new blocklisted password on a new line.
-
When done, click Add to return to the Password Blocklist page.
-
Click Save.
Validate your changes
After you save, verify the following:
- The new values appear in the Password Blocklist list.
- A test password that contains a blocklisted value is rejected.
- A test password that does not contain a blocklisted value can be accepted if all other password policy rules are met.
To delete a password blocklist, click beside the blocklist.