These options enforce complexity on user passwords (not applicable if domain authentication is enabled).
Minimum password length |
Any password must have at least this many characters. |
|||||||
Require mixed-case passwords |
Every password must have at least one lower-case and one upper-case alphabetic character. |
|||||||
Require numeric characters... |
Every password must have at least one numeric digit. |
|||||||
Prevent use of dictionary words... |
Passwords may not contain any of the words in the current spell check dictionary. Mixing the case of the characters in the word bypasses this, unless Even mixed-case words is checked. |
|||||||
Prevent inclusion of first/last names... |
Disallows the user's first and last names from his password. |
|||||||
Enable two-factor authentication via SMS |
|
|
Two-factor authentication is only available if SMS/text messaging is enabled.
Note that these requirements are cumulative, meaning that a password must meet all of the requirements here to be considered acceptable.