← Back to plugin index

Valid Flag Password Policy

Description
A password policy check that evaluates a password's validity according to a user property. Passwords to be verified are accepted or rejected based exclusively on the boolean value of a specific context data field of the user record. The context data key is arbitrary and must be specified in the configuration. The semantic of the property's value is "true" means "accept password". The semantic may be inverted if required such that "true" means "reject password".

This feature can be used to selectively allow/reject passwords on a user basis (e.g. for password change).

Type name
PwdPolicyPasswordValidFlagCheck
Class
com.airlock.iam.core.misc.impl.authen.PwdPolicyPasswordValidFlagCheck
May be used by
Properties
Context Data Key (contextDataKey)
Description
Context data key of the boolean user property specifying the password's validity. Expected values of this property are true and false.
Attributes
String
Mandatory
Suggested values
password-valid, password-invalid
Valid If True (validIfTrue)
Description
Specifies the meaning of the password validity flag: The default interpretation is to accept a password if the value is true. You may invert the behavior such that passwords are rejected when the value is true.
Attributes
Boolean
Optional
Default value
true
Default Value (defaultValue)
Description
Specifies the default value of the password validity flag if the value is unspecified or not set in a user record. The value of valid-if-true has no influence on this property.
Attributes
Boolean
Optional
Default value
true
YAML Template (with default values)

type: PwdPolicyPasswordValidFlagCheck
id: PwdPolicyPasswordValidFlagCheck-xxxxxx
displayName: 
comment: 
properties:
  contextDataKey:
  defaultValue: true
  validIfTrue: true