Fortinet black logo

Administration Guide

Password policies

Password policies

Using a secure password is vital to prevent unauthorized access. FortiPAM allows you to create password policy for secret passwords generated by the password changer. See Password changers.

With password policies, you can enforce specific criteria for a new password, including:

  • Minimum length between 8 and 64 characters.

  • Maximum length up to 64 characters.

  • The password must contain uppercase (A, B, C) and/or lowercase (a, b, c) characters.

  • The password must contain numbers (1, 2, 3).

  • The password must contain special or non-alphanumeric characters (!, @, #, $, %, ^, &, *, (, and )).

Password policies can only be applied to a secret template when Password Changer is enabled for the template.

Password policies are not applicable to SSH keys (Password changer Type is SSH with Public Key).

For each password policy; name, password requirement, minimum length, maximum length, and references are displayed.

The default password policy has the following features:

  • Minimum length: 10

  • Maximum length: 20

  • Password Requirements: 3, 3, 2, and 2 minimum number of characters from the lower, upper, symbol, and number character sets respectively. See Character sets.

The Password Policies tab contains the following options:

Create

Select to create a new password policy. Password policies.

Edit

Select to edit the selected password policy.

Delete

Select to delete the selected password policies.

Search

Enter a search term in the search field, then hit Enter to search the password policies list. To narrow down your search, see Column filter.

Password policies

Using a secure password is vital to prevent unauthorized access. FortiPAM allows you to create password policy for secret passwords generated by the password changer. See Password changers.

With password policies, you can enforce specific criteria for a new password, including:

  • Minimum length between 8 and 64 characters.

  • Maximum length up to 64 characters.

  • The password must contain uppercase (A, B, C) and/or lowercase (a, b, c) characters.

  • The password must contain numbers (1, 2, 3).

  • The password must contain special or non-alphanumeric characters (!, @, #, $, %, ^, &, *, (, and )).

Password policies can only be applied to a secret template when Password Changer is enabled for the template.

Password policies are not applicable to SSH keys (Password changer Type is SSH with Public Key).

For each password policy; name, password requirement, minimum length, maximum length, and references are displayed.

The default password policy has the following features:

  • Minimum length: 10

  • Maximum length: 20

  • Password Requirements: 3, 3, 2, and 2 minimum number of characters from the lower, upper, symbol, and number character sets respectively. See Character sets.

The Password Policies tab contains the following options:

Create

Select to create a new password policy. Password policies.

Edit

Select to edit the selected password policy.

Delete

Select to delete the selected password policies.

Search

Enter a search term in the search field, then hit Enter to search the password policies list. To narrow down your search, see Column filter.