<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D50Z00008G7UpmSAFOkta Classic EngineIntegrationsAnswered2024-04-30T09:18:25.000Z2018-02-26T16:07:38.000Z2018-02-26T16:25:42.000Z

CoreyP.28155 (Customer) asked a question.

How are previous password enforced during Forgot Password?
It appears that /api/v1/authn/credentials/reset_password allows for a previous password to be used? Is this due to Okta configuration or does this use the AD admin reset which bypasses the password history?

  • Hello Corey,

     

      Based on the call that has been referenced in the question, the call will perform the operation on the user account, if the current setting allow it. However, in regards to setting the password through API, the password will be set as per the one mentioned in the call, as the flows are different (the one set through the call does not fall under Forgot Password). If you would like to verify specific information, based on your current environment and requirements, we recommend opening a support ticket so that we can provide you with specific technical guidance.

     

     

    Thank you,

    Cristian Mondiru

    Technical Support Engineer

    Expand Post
  • j5v7c (j5v7c)

    Hello,

     

    Thanks for posting your inquiry in Okta Community Portal.

     

    ​If you receive a great answer to your question(s), please help readers find it by marking it the best answer. Hover over the answer and click "Best Answer." 

     

    Thank you,

     

    ​Dylann Fezeu

    OHC Team
    Expand Post
This question is closed.
Loading
How are previous password enforced during Forgot Password?