
90x01 (90x01) asked a question.
Password authenticator is set to expire in a year & is assigned to a group everyone is a part of by default upon the creation of their account.
Everyone has had to reset there password after the 1 year time limit expires, except for a handful of users.
The affected users haven't had to reset their password over a year w/ some being almost 2 years old.
I checked any common group/authenticators/policies but none of them seem affect the expiration of a password.
I tested to see if manual reset via email or temp pass would reset the age of the pass but it does not (checked this pulling a report after using a test account - password change field is updated)

Hi @90x01 (90x01) , Thank you for reaching out to the Okta Community!
While looking into this I've noticed that you already have a ticket open.
The Okta Community Questions forum isn't really meant for in-depth troubleshooting.
If you already have a Support ticket open, then I recommend continuing the discussion with the assigned Technical Support Engineers. They'll be able to access additional tools and resources to help you get to the bottom of it.
Regards.
--
Join the discussion for the Ask Me Anything online event on May 23, 2024 with Okta Tactical Edge Product Experts