Inside Activate
...
How To Guides
AD Password Requirements and Fine Grained Password Policies
4 min
how activate displays the password requirements to users activate queries the default domain policy to find the password requirements for the domain as a whole these are displayed to users to give them information the main places these are used are the root of the passwords task they are also displayed to users when they use the activate credential provider or activate anywhere to change their password an example from activate anywhere is fine grained password policies and password requirement information the password requirements in the default domain policy apply to all users in the domain fine grained password policies are a feature in active directory that allows different password policies to be defined these are secured to different active directory groups and apply to only the users in the respective active directory groups if you are using fine grained password policies and want activate to show the users the password requirements based on the fine grained password policy that would apply to them, then it is recommended that you create roles within activate that use a members parameter associated with the same active directory group that is used for the fine grained password policy for example then you can use these activate roles to determine the information that is displayed to the users for the information used in the credential provider or on the activate anywhere password reset page, then you should use the instructions tag inside the xml configuration at //tasks/passwords/passwordresetquestions can be expressions e g true left unhandled content type left unhandled content type note if you copy the text above within the \<instructions> node you will need to remove the between the %= for this to work to change the information at //tasks/passwords simply edit the web page parameter so that the expressions depend on the relevant roles