Sorry, we didn't find any relevant articles for you.

Send us your queries using the form below and we will get back to you with a solution.

Configure User Password Expiry

 

Organization Admins can configure the User Password Expiry period to specify how many days a user's password remains valid before they are prompted to change it upon their next login. The expiry period can be configured in one of three ways: 

  • Never Expires - (Default Setting) User passwords will never expire and have to be reset manually with no prompt.
  • Predefined Time Period -  30, 60, 90, 180 days, or one year.
  • Custom Value - Enter a number value in days, 1 to 9999 - examples: 45 days, 120 days, 730 days (2 years), etc. 

How Does User Password Expiry Work?

  1. An Org Admin configures the Password Expiry value.
  2. All users' passwords expire after the set time.
  3. Once expired, each user is prompted to change their password at the next login. 

Changing the User Password Expiry Period

  1. Expand the Organization Menu in the Menu Bar (contains the organization name and the user's first name).
  2. Select the My Organization menu option.
  3. Select an option in the Password Expiry Setting drop-down menu (or) select Custom (in days) to enter a specific number of days. 
  4. Click Save.

Frequently Asked Questions (FAQs)

Does the change apply to all users or are Org Admins excluded?

It applies to all users of that Organization, including Org Admins.

 
 

Does the user receive an email, or are they only prompted when logging in?

Once the password expires, the user is prompted to enter a new password when they log in. Users do not receive an email notification.
 
 

What happens if a user does not change their password after expiry?

The user cannot log in until they change their password. When attempting to login, they will continue to receive a prompt asking them to do so. 

 
 

Is there a way to notify users in advance before their password expires?

Currently, there is no way to do this directly in GenRocket; however, you can include general instructions in the policy based on the set time period or a custom number of days. 
 
 

What should an Org Admin do if a user cannot reset their password or log in? 

They can send the user a password reset email to get them back into the GenRocket web platform. Instructions can be found here: How do I send users a Password Reset Email?.