<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
Enforce Password History Policy Includes Current Password
Administration
Okta Classic Engine
Okta Identity Engine
Overview

This knowledge article aims to clarify the behavior of the Enforce password history for the last X Passwords setting in Password Policy. 

Applies To
  • Password Policy
  • Enforce Password History
Solution
The user's current password is considered when enforcing the password history requirement in the password policy.
 
Consider the following example:
Password age



If Enforce password history for last X passwords is set to "last 3 passwords," a user can reuse their original password on the fourth password reset.
 

Related References

Loading
Enforce Password History Policy Includes Current Password