Fortinet black logo

Advanced Administration Guide

Setting password policies

Setting password policies

Security > Password Policy lets you view the SIP password policy and configure user PIN policy for administrators and extension users. For information on setting SIP password and user PIN, see Configuring IP extensions.

To set password policies

  1. Go to Security > Password Policy > Password/PIN Policy.
  2. Configure the following:

    GUI field

    Description

    Password / PIN Policy

    By default, the SIP password and user PIN policy for administrators and extension users are enabled. This is read-only.

    Password Policy

    This is read-only.

    • Minimum password length: The minimum acceptable length (8) for passwords.
    • Password must contain: The special character types required in a password. Each selected type must occur at least once in the password.
      • Upper case letter — A, B, C, ... Z
      • Lower case letter — a, b, c, ... z
      • Number — 0 ... 9
      • Non alphanumeric — punctuation marks, @,#, ... %
    • Apply password policy to: Places where the password policy is applied:
      • Admin user — Apply to administrator web GUI passwords. If any password does not conform to the policy, require that administrator to change the password at the next login.
      • SIP user — Apply to FortiVoice SIP phone users’ passwords. If any password does not conform to the policy, require that user to change the password at the next login.
      • User passwords: Apply to user portal access passwords. If any password does not conform to the policy, require that user to change the password at the next login.

    PIN policy

    • Minimum PIN length: Set the minimum acceptable length (6) for the user PIN.

    • PIN must contain:
      • Number: to include a number (0-9) in the PIN.
      • PIN special: Select to include special characters in the PIN.
    • Apply PIN policy to: Select Voicemail users to apply the policy to FortiVoice Cloud phone users’ user PIN. If any PIN does not conform to the policy, require that user to change the PIN at the next login.
    • PIN expiration: Select the voicemail PIN expiration options.
      • Never: Users set their voicemail PIN and the PIN never expires.
      • Default Only: Extension users using the default voicemail PIN is prompted to change the PIN when accessing their voicemail for the first time. For information on voicemail PIN, see Setting up local extensions.
      • All: Extension users are prompted to change the voicemail PIN when accessing their voicemail for the first time and regularly according to the PIN expiration time.
    • PIN expiration time: If you selected All for PIN expiration, select the PIN expiry time in days.
  3. Click Apply.

Setting password policies

Security > Password Policy lets you view the SIP password policy and configure user PIN policy for administrators and extension users. For information on setting SIP password and user PIN, see Configuring IP extensions.

To set password policies

  1. Go to Security > Password Policy > Password/PIN Policy.
  2. Configure the following:

    GUI field

    Description

    Password / PIN Policy

    By default, the SIP password and user PIN policy for administrators and extension users are enabled. This is read-only.

    Password Policy

    This is read-only.

    • Minimum password length: The minimum acceptable length (8) for passwords.
    • Password must contain: The special character types required in a password. Each selected type must occur at least once in the password.
      • Upper case letter — A, B, C, ... Z
      • Lower case letter — a, b, c, ... z
      • Number — 0 ... 9
      • Non alphanumeric — punctuation marks, @,#, ... %
    • Apply password policy to: Places where the password policy is applied:
      • Admin user — Apply to administrator web GUI passwords. If any password does not conform to the policy, require that administrator to change the password at the next login.
      • SIP user — Apply to FortiVoice SIP phone users’ passwords. If any password does not conform to the policy, require that user to change the password at the next login.
      • User passwords: Apply to user portal access passwords. If any password does not conform to the policy, require that user to change the password at the next login.

    PIN policy

    • Minimum PIN length: Set the minimum acceptable length (6) for the user PIN.

    • PIN must contain:
      • Number: to include a number (0-9) in the PIN.
      • PIN special: Select to include special characters in the PIN.
    • Apply PIN policy to: Select Voicemail users to apply the policy to FortiVoice Cloud phone users’ user PIN. If any PIN does not conform to the policy, require that user to change the PIN at the next login.
    • PIN expiration: Select the voicemail PIN expiration options.
      • Never: Users set their voicemail PIN and the PIN never expires.
      • Default Only: Extension users using the default voicemail PIN is prompted to change the PIN when accessing their voicemail for the first time. For information on voicemail PIN, see Setting up local extensions.
      • All: Extension users are prompted to change the voicemail PIN when accessing their voicemail for the first time and regularly according to the PIN expiration time.
    • PIN expiration time: If you selected All for PIN expiration, select the PIN expiry time in days.
  3. Click Apply.