# Password Policy

## Super Admin

New role as a 'Super Admin' who have highest access level on every platform

<figure><img src="https://4173380749-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzKzxNnOaGxZvAEzvYa7y%2Fuploads%2FhPoEbQgQ9kpwL7xgM1xl%2Fimage.png?alt=media&#x26;token=b6c33514-6b84-4827-b7ad-f14155555c02" alt=""><figcaption></figcaption></figure>

## Password Complexity Policy

<div align="center" data-full-width="true"><figure><img src="https://4173380749-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzKzxNnOaGxZvAEzvYa7y%2Fuploads%2FBhjoVPWOttqoGiOoVELh%2Fimage.png?alt=media&#x26;token=efe02384-93f2-4638-90f3-b7d4e15ffca2" alt="" width="375"><figcaption><p>Normal user</p></figcaption></figure></div>

<div align="center"><figure><img src="https://4173380749-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzKzxNnOaGxZvAEzvYa7y%2Fuploads%2FjMku4vLVJ9OZubPrvrd5%2Fimage.png?alt=media&#x26;token=a0da1276-9700-4fc5-898f-8f6527aa869e" alt="" width="375"><figcaption><p>Super admin</p></figcaption></figure></div>

<table><thead><tr><th width="181">User Type</th><th width="147">Minimum char</th><th width="147">Maximum char</th><th>Special requirement</th></tr></thead><tbody><tr><td><p><strong>Normal User</strong></p><p></p><p>*Policy enforced for all users</p></td><td>8</td><td>-</td><td><ul><li>a combination of alphanumeric characters</li><li>uppercase and lowercase letters</li><li>special characters</li></ul></td></tr><tr><td><strong>Super Admin</strong><br><br>*Configurable by network</td><td>8</td><td>99</td><td><ul><li>a combination of alphanumeric characters</li><li>uppercase and lowercase letters</li><li>special characters</li></ul></td></tr></tbody></table>

## Password Change Frequency&#x20;

Users should be permitted to change their passwords no more than once per 24 hours, with the configuration of this policy differing for each network.

<figure><img src="https://4173380749-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzKzxNnOaGxZvAEzvYa7y%2Fuploads%2FdWkgzIkFp7wnEJYCeAjY%2FScreenshot%202567-04-22%20at%2015.32.47.png?alt=media&#x26;token=73dd0b46-9b24-49bf-872a-0cb066ee9be5" alt="" width="375"><figcaption></figcaption></figure>

<table><thead><tr><th>Policy</th><th width="129">Minimum</th><th width="138">Maximum</th><th data-type="checkbox">Configurable</th></tr></thead><tbody><tr><td><strong>Password Change Frequency</strong></td><td>1</td><td>12</td><td>true</td></tr></tbody></table>

## Account Lockout Policy

After the configured number of consecutive failed login attempts within 5 minutes, the account should be locked for the configured amount of time. By default, 5 times will lock for 1 hour.

<figure><img src="https://4173380749-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzKzxNnOaGxZvAEzvYa7y%2Fuploads%2F8oheBrShjPFaNgUMHMop%2FScreenshot%202567-04-22%20at%2015.31.40.png?alt=media&#x26;token=78f1e3c3-723b-4908-b7b3-4a4db15ff05a" alt="" width="375"><figcaption></figcaption></figure>

<table><thead><tr><th>Policy</th><th width="129">Minimum</th><th width="138">Maximum</th><th data-type="checkbox">Configurable</th></tr></thead><tbody><tr><td><strong>Number of fail attempts</strong></td><td>1</td><td>12</td><td>true</td></tr><tr><td><strong>Range of time to locked account</strong></td><td>5</td><td>180</td><td>true</td></tr></tbody></table>

## Duplicate Password Prevention

Users should not be able to set passwords that match any of their last previously passwords. the previous password range is network-configurable, with a default of last 5 passwords.

<figure><img src="https://4173380749-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzKzxNnOaGxZvAEzvYa7y%2Fuploads%2FPAPaMFlKVrLypNiOqcBk%2FScreenshot%202567-04-22%20at%2000.42.19.png?alt=media&#x26;token=a9917c8f-c000-4d9a-b420-bcf87a7a070a" alt="" width="375"><figcaption></figcaption></figure>

<table><thead><tr><th>Policy</th><th width="129">Minimum</th><th width="138">Maximum</th><th data-type="checkbox">Configurable</th></tr></thead><tbody><tr><td><strong>Retention limit</strong></td><td>1</td><td>12</td><td>true</td></tr></tbody></table>

## Force Change Password

Super Admin and also Normal User (Agent) should be prompted to change their password every X days.

<figure><img src="https://4173380749-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzKzxNnOaGxZvAEzvYa7y%2Fuploads%2Fozq1JTUQVlpvDvu3d0ix%2FScreenshot%202567-04-22%20at%2015.36.10.png?alt=media&#x26;token=4302bde6-72b3-4793-a9f4-8916fc592fb4" alt="" width="371"><figcaption></figcaption></figure>

<table><thead><tr><th width="183">User Type</th><th width="163">Minimum (day)</th><th width="160">Maximum (day)</th><th data-type="checkbox">Configurable</th></tr></thead><tbody><tr><td><strong>Normal User</strong></td><td>30</td><td>1095</td><td>true</td></tr><tr><td><strong>Super Admin</strong></td><td>30</td><td>1095</td><td>true</td></tr></tbody></table>

## Auto-Disable User

Our Auto-Disabled User Policy feature is designed to enhance the security of your account by automatically monitoring user activity and disabling inactive accounts. This policy checks for users who have not logged out for a specified period of time, ensuring that only active users have access to the system.

<table><thead><tr><th width="183">Policy</th><th width="165">Minimum (days)</th><th width="176">Maximum (days)</th><th data-type="checkbox">Configurable</th></tr></thead><tbody><tr><td><strong>Inactive user</strong></td><td>30</td><td>365</td><td>true</td></tr></tbody></table>
