Hi all,
I was wondering if there is a way to change the required password quality level. I know how to do it when registering new people, but is there a way to do it when the person already exsits?
Hi all,
I was wondering if there is a way to change the required password quality level. I know how to do it when registering new people, but is there a way to do it when the person already exsits?
Subject: Changing Password Quality Level
You can either use the old mail-based recertification mechanism to change the password quality level, or you can set a security policy, causing the affected users to automatically download the changes into their ID files when they authenticate to their home servers.
Subject: Changing Password Quality Level
You can change the level by recertifying the account.
Subject: RE: Changing Password Quality Level
Do you mean re-register? By re-registering you can create a brand new ID file and update the existing person document, but that doesn’t modify the original ID file.
When you re-certify an ID the only real option is to change the expiration date.
Subject: RE: Changing Password Quality Level
When you go to the Configuration tab, then to the Tools menu, on the certification tab, you’ll see Certify. When you choose this it will ask you for the certifier ID and server. Once you select these, it will ask you for the ID to certify. Select the ID, enter the password (normally it is the original password you used when created), you can then select the password difficulty setting.
The only issue that you will have doing it this way, is if you keep copies of the original ID and use that to recertify, you will have to replace the user’s id file on their system.
Hope this helps.
Subject: Also a safe.id can be used
A safe.id is not password protected. The user creates the safe.id sends it to the admin to be recertified, and once recertified that admin sends the safe.id back to the user who merges it back into their user.id.
Advantage is security (users can get recertified without revealing their password), disadvantage is users being intelligent enough to create/send a safe.id and then merge it back when it is returned.
Subject: RE: Also a safe.id can be used
One issue with safe ID files. If the certificatre has expired the user may not be able to get into their mail. Users are not always the brightest, so, bypassing the user altogether may be the best solution.