This article aims to provide clarity on the specifics of our Okta password policy, outlining the requirements and best practices for creating and managing strong passwords within our system.
OKTA Username
Usernames are email addresses
Password Complexity Requirements
Minimum Length: 8 characters
Required Character Types:
1 Lowercase letter
1 Uppercase letter
1 Number (0–9)
1 Symbol (e.g., !@#$%^&*)
Restrictions:
Must not contain part of the username
Must not contain first name
Must not contain last name
Common Password Check: Enabled (restricts use of common passwords)
Password Age & History
Password History: Last 4 passwords cannot be reused
Minimum Password Age: 2 days
Password Expiration: 120 days
Expiration Prompt: Users are notified 5 days before expiration
Account Lockout Settings
Lockout Threshold: 10 unsuccessful login attempts
Auto Unlock: After 30 minutes
Additional Settings:
Show lockout failures
Send lockout email to user