Password Screening and Reset Controls

RapidIdentity Platform Documentation

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

RapidIdentity integrates with Have I Been Pwned to screen passwords against known data breach databases at the time of reset, and rejects passwords found in a breach before they are set. You can configure the following password reset controls in Configuration > Password > General:

  • Force password reset on next login, which can be set as the default or hidden from users
  • Password reset to a specific attribute value
  • Random password generation
  • Administrative overrides for password history and password policy