Question
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
JPMC
US
Last activity: 24 Jun 2017 12:25 EDT
How can we include a check to have atleast one Uppercase and one lowercase alphabets
Hi All.. Could you please help me with my below queries?
How can we include a check to have atleast one Uppercase and one lowercase alphabets in security policy? And also how to enforce user to change password on first login?
-
Like (0)
-
Share this page Facebook Twitter LinkedIn Email Copying... Copied!
Accepted Solution
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
Pegasystems
IN
Please refer to this PDN article - https://docs-previous.pega.com/configuring-login-security-and-password-policies-prpc-63-sp1-pega-71x
It refers
"It also reminds you that if this is the first time these policies have been enabled on this system, all users are prompted to change their password.”
Option of 1 minimum lowercase alphabet and 1 minimum uppercase alphabet is currently not available.
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
JPMC
US
Thank you Rajiv for your information!!
I have couple of more questions regarding the same:
1. Is there a OOTB way to notify operator before password is expired.
2. Is there a way to disable operator after certain period of inactivity?
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
Pegasystems Inc.
IN
Not sure with the below approaches but still please read through and share your comments/thoughts...
>>> Is there a OOTB way to notify operator before password is expired.
not sure having an OOTB correspondence to remind user. but a spike around the value stored for property 'pyMaxOperPwdAge' with a declare onChange rule to send correspondence may help...
>>> Is there a way to disable operator after certain period of inactivity?
property .pyLastSignon will have the last signOn value. depending on the difference between current date to pyLastSignon date we could either delete the operator ID or reset the password to administrator known value. this could be implemented via agent rule scheduling on demand...
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
JPMC
US
Thanks you Phani!!
Your response is really helpful. I am trying to display password change screen based on my custom requirement. I was digging around it found some usefull information.
I have one more question regarding an activity named pzShowCPHarness . Can someone please let me know that how/where this activity is getting triggered. I tried searching but could find. It seems this activity get triggered when we have pyChangePassword = true but where and how - I could not find.
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
Pegasystems Inc.
JP
"pzShowCPHarness" is invoked directly via URL, upon the successful authentication and security policy check. PRPC will redirects the browser to prweb/PRServlet/!STANDARD?pyActivity=Data-Admin-Operator-ID.pzShowCPHarness
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
JPMC
US
Thank you Chunzhi!!
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
Pegasystems Inc.
AU
Hi Chunzhi,
pzShowCPHarness is calling only on PRServlet. I am using prcustom authentication and wanted to use the same logic but it never triggers on custom authenticated servlet.
Have you come across the same?
Thanks
Jyothi.K
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
data:image/s3,"s3://crabby-images/37998/379989cfbedeb915c0e43cbb48c01324601e9bcb" alt=""
Pegasystems Inc.
US
Hi Jyothi,
Were you able to get this working? I have same requirement, where I am using PRServletCustom and have created a custom authentication activity. The Operator record has the Force password change on next login to true. But for some reason, the change password screen does not show up.
Any suggestions/solutions that you found?
Amit.