- Joined
- Aug 31, 2017
- Messages
- 65
- Reaction score
- 19
Hello,
Currently when creating a new user and sending a welcome email, all login informations are sent in the email.
I'm not a security guru but the situation where everything is transmitted to one place is no longer a viable solution.
The reason I'm posting the request here is that we've already had several customers where this has been a problem and where there have been monetary repercussions.
This is more of a general request to increase the level of granularity of the security settings than a specific request on one point.
Be well.
Currently when creating a new user and sending a welcome email, all login informations are sent in the email.
I'm not a security guru but the situation where everything is transmitted to one place is no longer a viable solution.
The reason I'm posting the request here is that we've already had several customers where this has been a problem and where there have been monetary repercussions.
This is more of a general request to increase the level of granularity of the security settings than a specific request on one point.
- It would be nice to be able to force users to change their password after a first login to avoid the welcome email being kept indefinitely or retrieved by a third party.
- Or even get a link to set a password before the first login with a password complexity defined by the administrator.
Number of characters
Special characters
Upper case
Lower case
- Have the possibility to define a password change policy after time.
- Possibility by the administrator to define and force the use of a 2FA via an app like Authy, Google Auth, etc.
Without having to go through an SSO login linked to an O365 solution.
- ... more
Be well.
Upvote
13