John Ruhiu created FINERACT-2005:
------------------------------------

             Summary: Prohibit password re-use
                 Key: FINERACT-2005
                 URL: https://issues.apache.org/jira/browse/FINERACT-2005
             Project: Apache Fineract
          Issue Type: New Feature
            Reporter: John Ruhiu
             Fix For: 1.9.0


A user should not reuse the same password.

Add the ability to check if the password entered by the user when resetting 
their password or when the system admin is resetting the user password has ever 
been used by the same user before. If so, reject with a message telling the 
user to enter a different password.

Allow admin to set the max number of passwords the system will check when 
evaluating pass re-use i.e the system should for example allow a user to use 
the same password, if 5 other passwords have been used.

 



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to