[Koha-bugs] [Bug 6848] Stronger password management for staff users

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Sat May 4 13:23:53 CEST 2019


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=6848

Katrin Fischer <katrin.fischer at bsz-bw.de> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
         Resolution|---                         |MOVED
             Status|ASSIGNED                    |RESOLVED
           Assignee|kohapatch at gmail.com         |koha-bugs at lists.koha-commun
                   |                            |ity.org
            Summary|Stronger password mgmt on   |Stronger password
                   |Staff Interface             |management for staff users
           See Also|                            |https://bugs.koha-community
                   |                            |.org/bugzilla3/show_bug.cgi
                   |                            |?id=21309,
                   |                            |https://bugs.koha-community
                   |                            |.org/bugzilla3/show_bug.cgi
                   |                            |?id=13664

--- Comment #1 from Katrin Fischer <katrin.fischer at bsz-bw.de> ---

(In reply to Savitra Sirohi from comment #0)
> 1. Don't allow first or last name to be used in the password
> 2. Force password change using a system pref controlled period

I think 1) could be covered by using plugins for password strength. Note: We
alredy have a system preference for better password complexity now.

Bug 13664 - Add password strength plugin

2) I think is interesting. There is a bug asking for a feature that enforces
password reset on first login:

Bug 21309 - Enforce password change on login

This could act as the foundation for a regular password reset.

I think this bug is too broad right now, asking for at least 2 features.
Therefore I am closing this bug as 'moved'.

-- 
You are receiving this mail because:
You are the QA Contact for the bug.
You are watching all bug changes.
You are the assignee for the bug.


More information about the Koha-bugs mailing list