Local user password policy

  • Updated

Opti ID has a global password policy for local login users that adheres to the following requirements:

  • A minimum length of 12 characters
  • At least one lowercase letter
  • At least one uppercase letter
  • At least one number
  • At least one symbol (for example, !@#$%^&*)
  • Does not contain part of the user's login (email address)
  • Does not contain your first name
  • Does not contain your last name
  • Is not in a set of commonly used passwords
  • Was not used as the last 12 passwords
  • Must not contain repetition of any three of the same characters (like 111, AAA, bbb) or sequential characters (like 123456, 98765, abcd)

The password policy is enforced during the following actions:

If the user surpasses 6 unsuccessful login attempts, their account will be locked. Contact your organization's Opti ID Admin Center administrator or Optimizely Support to unlock it.

Password expiration policy

  • Password expires 120 days after you set it
  • Opti ID sends an email notification each day starting 5 days before your password expires
  • If you do not change your password before the expiration date, Opti ID requires you to change your password upon your next login