phproject
phproject copied to clipboard
Password expiration
Admins should be able to:
- Set the maximum lifetime site-wide
- Disable password expiration for individual users
- Forcibly expire an individual user's password
- Set number of previous passwords to store to prevent re-use of a previous password
Users should be required to choose a new password after the first successful authentication with an expired password.