User Passwords

Options
Hello all,

I would like to know in your organizations if your RE users are able to change their on passwords? Also, do they share their RE users password with someone. If so who is that person (DBA, ED...)?

Comments

  • Hi



    I allow the individual to change their password as and when it is needed, they should not share passwords with anyone as it negates the need for them.



    Thanks
  • Gary Parratt:

    Hi



    I allow the individual to change their password as and when it is needed, they should not share passwords with anyone as it negates the need for them.



    Thanks

    Thank you Gary. That would include you as the DBA, correct?

  • As the DBA, I set the password initially and then let the user change it.  Since it is very easy to update a password when a user forgets theirs, I see no need to know their password.  It's also in-line with our IT staff's audit policy, that no one should share a password with anyone else.



    No one shares a password with another user.  Each user is given their own profile in security, even temporary staff.  With seasonal student workers I delete their user account after they graduate.
  • When we set up a user, the initial password is set and the user is shown how to change their password on their first training session.  We allow users to change their password and remind them not to share their password or log-in with anyone and even have them sign a user agreement.  This includes IT staff; only the individual knows his or her password.  Yes, sometimes they forget and when that happens if they just locked themselves, we remind them they can wait 30 minutes for it to unlock.  If they forgot it, we reset it for them.
  • Same as what everyone has already said, for RE:7 Local Install.



    If you are Hosted, you can go into the Citrix Admin and set a Username to require the User to change their password upon their next signon.  I like this feature, because it means I don't have to trust that they're just leaving the password to what I set (and emailed to them in an unsecure message).  In RE:7 Hosted, you can set up each Username with Windows Authentication eliminating the need for signing in to Citrix and then again to RE:7.



    For Blackbaud Omnibar (Blackbaud.com and RE:NXT, amoung other services), there's a [Forgot Password?] link that the User can use to reset their password without the DBA needing to be involved at all.

Categories