Internet/HTTP Password Quality

Hi,

I have a strange situation that requires some of our users to have a Person doc in the DD but never use a Notes Client, they will always hit our servers via the web…

My question revolves around the requirement I have to create a complex Internet/HTTP password that matches our corporate security requirements (min 8 characters mixed case alpha numeric). However while I can use a Security policy to do this if I have a Notes id and Notes Client, I cannot seem to find a way to get it to work for those users who purely use the Web and have no Notes id or Client…

Has anybody else come across this issue before and found a solution, or can anyone make a suggestion how I could achieve my end goal?

Many thanks,

Paul