Password Policy Applicable for Self-Service Registration on Okta Classic Engine
Last Updated:
Overview
When Self-Service Registration (SSR) is enabled, Okta prompts users to set a password during registration. The first password policy on the policy list applies to the SSR process. Administrators can configure a specific password policy for SSR by assigning a group to SSR users and prioritizing the corresponding policy.
Applies To
- Correct Password Policy configuration for SSR
- Okta Classic Engine
- After enabling Self-Service Registration (SSR)
Solution
Which password policy applies to Self-Service Registration?
The first password policy on the list applies to Self-Service Registration (SSR). Okta recommends using a specific group for these users to ensure the correct policy applies.
Configure the correct password policy for SSR by assigning a group to the registration process, creating a policy for Okta-sourced users, and moving the policy to the top of the priority list.
- Set a group for the users created through SSR.
- Create a password policy and a rule for this group applicable to Okta-sourced users.
- Move this password policy to the first place on the password policy list.
- Verify that this password policy validates the password when the user performs SSR.
