Breached Password Email Reset Link Validity Period

Overview

This article explains how long the change password link remains valid when configuring breached password protection to send emails to users.

Applies To

  • Reset Password
  • Change Password
  • Password Link

Cause


Solution

The password reset links in breach password emails have a default timeout of 5 days, and it is not configurable at the moment.

 

NOTE: A new password reset link for a user invalidates previously issued links, even if the 5-day window has not yet expired.

Recommended content

No recommended content found...