Hello Team,
I have configured the password policy on LDAP to store the last 5 passwords in history.
Effective password policy for XYZ user
The effective password policy is calculated based on the following entries:cn=scbgroup,CN=IBMPOLICIEScn=pwdpolicy,cn=ibmpoliciesThe effective password policy is:ibm-pwdPolicyStartTime=20210302095312.046897ZpwdInHistory=5pwdCheckSyntax=0pwdGraceLoginLimit=0pwdLockoutDuration=0pwdMaxFailure=0pwdFailureCountInterval=0passwordMaxRepeatedChars=0passwordMaxConsecutiveRepeatedChars=0pwdMaxAge=3888000pwdMinAge=0pwdExpireWarning=0pwdMinLength=8passwordMinAlphaChars=1passwordMinOtherChars=1passwordMinDiffChars=0ibm-pwdPolicy=truepwdLockout=falsepwdAllowUserChange=truepwdMustChange=falsepwdSafeModify=falseibm-pwdGroupAndIndividualEnabled=trueFrom pdadmin utility, if we try to change the password with the same password then its throws the error i.e policy violation
> user modify XYZ password Passw0rd@1Could not perform the administration requestError: HPDIA0300W Password rejected due to policy violation. (status 0x1321212c)but when I try to change the password from infoMap with the changePassword(oldPassword,newPassword) method from
com.ibm.security.access.user.User Class. then password policy is not enforced.
why the password policy is not enforced if we change the password from infoMap?
can anyone help me with the same?
------------------------------
Mukesh
------------------------------