Kevin
Well-known member
It would be handy to have an ACP tool to reset & alert user accounts with weak passwords.
Since XF does not currently have any type of PW complexity logic the tool could start off with something basic such as if the user PW & user name are the same. If the condition is found then the PW could be changed to something random and then an alert generated to the user that their password was changed for security reasons & that they need to reset it (to keep it simple, a link to the existing XF forgot password process).
If XF gains PW complexity tools in the future then the tool to check for weak passwords would ideally be updated to check against the defined complexity rules.
Since XF does not currently have any type of PW complexity logic the tool could start off with something basic such as if the user PW & user name are the same. If the condition is found then the PW could be changed to something random and then an alert generated to the user that their password was changed for security reasons & that they need to reset it (to keep it simple, a link to the existing XF forgot password process).
If XF gains PW complexity tools in the future then the tool to check for weak passwords would ideally be updated to check against the defined complexity rules.
Upvote
0