What is the password policy?

For security purposes, the Password Policy in place is as follows:

Password Complexity:

  • Passwords must contain 1 lowercase letter
  • Passwords must contain 1 uppercase letter
  • Passwords must contain 1 number
  • Passwords must contain 1 special character (@#%^_*=)
  • Passwords must be 8 characters long
  • Passwords cannot exceed 30 characters long

Additional Password Restrictions:

  • Profile will be locked after 6 consecutive failed attempts and will require administrator to unlock
  • Password can be changed no more than 3 times within 20 minutes
  • Passwords cannot be the same as previous 4 passwords
  • Passwords will expire in 90 days
  • Change password email notification will be sent 15 days prior to password expiration