
GregK.54397 (Customer) asked a question.
When setting a password policy to 'Enforce password history for 4 passwords', does that mean that the next time a user changes their password, they can't user any of their last 4 - INCLUDING their current password - or - IN ADDITION - to their current password.
If the latter is true, then there are actually 5 recently used passwords they cannot use, correct?

Hello @GregK.54397 (Customer) , thank you for contacting Okta Community.
The option to enforce password history for the last four passwords includes the user's current password. In other words, it refers to the password that is being changed plus the previous three.
Regards.
--
Help others in the community by liking or hitting Select as Best if this response helped you.
Collect them all. Learn a new skill and earn a new Okta Learning badge.