Regarding Spotfire security, we received below requests to enforce password polity for database authentication from the customer's security team.
(1) It is possible to set an upper limit on the number of consecutive failed logins, to prevent unauthorized login attempts to the system.
(2) it is possible to lock the account when the number of consecutive failed logins reaches the limit by (1)
(3) It is possible to set the number of times to 5 or more that prohibits the most recently used password from being reused (e.g. can not reuse the last 5 used passwords )
(4) It is possible to set the minimum period of time after a password change until the next password change is possible.
(5) It is possible to set the maximum password validity period to 90 days or less.
Thanks.
Hi,
Are you talking about the authentication as Spotfire user when using the Spotfire database to store user authentication (Spotfire local user accounts)?
Or are you talking about authentication for data sources access?
Note that, for production systems, Spotfire usually is integrated with an external identity management system (e.g.: OAuth, LDAP or AD server), which provides password policies functionality (see Spotfire external user accounts).
Thanks
Miguel