- 08 Jan 2025
- 1 Minute à lire
- SombreLumière
- PDF
Mobile Authenticator Studio Password Policy
- Mis à jour le 08 Jan 2025
- 1 Minute à lire
- SombreLumière
- PDF
Due to the upgrade in password security, the Mobile Authenticator Studio policies supplied with OneSpan Authentication Server no longer allow the use of numeric-only passwords. To allow number-only passwords with Mobile Authenticator Studio, edit the policy by updating the settings in the current policy, or by creating a new policy specifically for these settings.
Updating the policies
The method for updating the policy settings depends on which provisioning scenario is used for Mobile Authenticator Studio.
OneSpan Authentication Server Mobile Authenticator Studio Provisioning 1
This scenario uses pre-loaded users and static passwords. If new users need to be created under this provisioning policy the following changes must be applied.
To update the password policy for OneSpan Authentication Server Mobile Authenticator Studio Provisioning 1
Log on to the Administration Web Interface.
- Select CLIENTS > List.
- Click the policy related to the Administration Program component.
Switch to the User tab and edit the Static Password settings.
Make a record of the current settings as they will have to be restored later.
Apply the following settings:
- Minimum Password Length: 4
- Minimum # Numerical Digits: 4
- All other static password settings: 0
- Create users as normal. The Static Password settings will be inherited from the policy applied to the Administration Program component.
- Restore the original Static Password settings in the policy applied to the Administration Program component.
An alternative to updating the existing policy is to create a new policy using the existing policy as a template. Change the static password settings in the new policy and update the Administration Program client component to use the new policy. Revert to the original policy after the new users have been created.
OneSpan Authentication Server Mobile Authenticator Studio Provisioning 2
This scenario can be used with the standard policy. There is no need to make any changes.
We recommend that this scenario is used if possible instead of the alternative policies.
OneSpan Authentication Server Mobile Authenticator Studio Provisioning 3
With the OneSpan Authentication Server Mobile Authenticator Studio Provisioning 3 scenario the Static Password settings may have to be changed if Password autolearn is set to Yes. If Password autolearn is set to No, then no changes are required.
Password autolearn retrieves the password from the back-end server. You may need to update the static password settings on the User tab of the policy to reflect the back-end password strength.