You're almost there! Please answer a few more questions for access to the Applications content. Complete registration
Interested in joining? Complete your registration by providing Areas of Interest here. Register

How to disable forgot password for employees?

Received Response
714
Views
20
Comments
edited Feb 21, 2023 5:51PM in Applications Security 20 comments

We have a requirement to disable forgot password option for employees. I had a look at the privileges and security policies and found that 'PER_RESET_PASSWORD_PRIV' is part of the role (via an inherited role Manage My Account). I initially thought that removing this will stop the application from sending the reset password link to employees, however the forgot password mails are being sent and employees are able to reset the passwords.

Just wanted to understand if there is a way to stop employees from resetting the passwords?

We want pending workers and certain 3rd party users to continue using the forgot password option, and that is the only reason why we haven't considered disabling the forgot password/reset template totally.

Howdy, Stranger!

Log In

To view full details, sign in.

Register

Don't have an account? Click here to get started!