History Password Policy
Description
A password policy check that tests whether the new password is the same as one in the password history (i.e. a previously used password).
The number of "forbidden" used passwords (= the password history length) is defined by the password hash plugin passed to this plugin when performing the check.
The number of "forbidden" used passwords (= the password history length) is defined by the password hash plugin passed to this plugin when performing the check.
IMPORTANT: If using this policy check, the used password hash function must support password histories. Use the "History Password Hash" plugin.
Performance considerations: For every entry in the password history a hash will be calculated. With growing password history length (the maximum of which is configured in "History Password Hash") the performance of this check degrades linearly.
Properties
YAML Template (with default values)
type: PwdPolicyHistoryCheck
id: PwdPolicyHistoryCheck-xxxxxx
displayName:
comment:
properties: