Changing Your Password
To change your password, enter your current login email and then enter and re-enter your new password. A verification email will be sent to your email address. Follow the instructions in the email to confirm your new password.
Any password is accepted, BUT please consider the following regulations for secure password usage and lifecycle management:
- - Password length of at least 12 characters.
- - Passwords should be unique, complex, and nonsensical, comprised of a mix of non-repeating letters (uppercase and lowercase), numbers, and symbols. They should not contain dictionary words in any language, have any other guessable context (e.g., employee ID, dates), or use sequences from a keyboard like ‘qwerty’ or ‘zxcvb’.
- - Frequently change your passwords—a process referred to as password rotation or resetting. The frequency of rotation should vary based on the password's age, usage, and security importance. For instance, a password for a standard user account may only require rotation at 60-day intervals, a process that can be enforced through password expiration. On the other hand, superuser accounts (e.g., root, domain admin) and other highly privileged passwords should be changed frequently, including after each use, which are known as one-time passwords (OTPs) for your most sensitive accounts.
- - Prohibit password reuse. Users should not use the same passwords across their personal and work accounts.
- - If you ever need to share your password, change it as soon as the other person is finished using it.