C613-50170-01 Rev B
Command Reference for x510 Series
184
AlliedWare Plus™ Operating System - Version 5.4.7-1.x
U
SER
A
CCESS
C
OMMANDS
SECURITY
-
PASSWORD
REJECT
-
EXPIRED
-
PWD
security-password reject-expired-pwd
Overview
This command specifies whether or not a user is allowed to login with an expired
password. Users with expired passwords are rejected at login if this functionality is
enabled. Users then have to contact the Network Administrator to change their
password.
CAUTION
:
Once all users’ passwords are expired you are unable to login to the device
again if the security-password reject-expired-pwd command has been executed. You
will have to reboot the device with a default configuration file, or load an earlier
software version that does not have the security password feature.
We recommend you never have the command line “security-password
reject-expired-pwd” in a default config file.
Note that when the reject-expired-pwd functionality is disabled and a user logs on
with an expired password, if the forced-change feature is enabled with
security-password forced-change
command, a user may have to change the
password during login depending on the password lifetime specified by the
command.
The
no
variant of the command disables this feature.
Syntax
security-password reject-expired-pwd
no security-password reject-expired-pwd
Default
The reject-expired-pwd feature is disabled by default.
Mode
Global Configuration
Example
To configure the system to reject users with an expired password, use the
command:
awplus#
configure terminal
awplus(config)#
security-password reject-expired-pwd
Related
Commands
security-password forced-change
security-password min-lifetime-enforce
security-password minimum-categories
security-password minimum-length
security-password