--- title: "Defining User Password Settings" slug: "defining-user-password-settings" description: "You can specify a password policy for users (Root and all sub-users). These are rules that define the type of password users can set." tags: ["Apply Password Policy", "User Password Settings"] status: "update" updated: 2026-09-11T14:13:02Z published: 2026-09-11T14:13:02Z canonical: "docs.wasabi.com/defining-user-password-settings" --- > ## Documentation Index > Fetch the complete documentation index at: https://docs.wasabi.com/llms.txt > Use this file to discover all available pages before exploring further. # Defining User Password Settings You can specify a password policy for all sub-users. These are rules that define the type of password users can set. 1. Click ![](https://cdn.document360.io/bef0a1ea-7768-4d5a-b520-c4fe2f7fafad/Images/Documentation/image-1698872569384.png) on the Users page. ![](https://cdn.document360.io/bef0a1ea-7768-4d5a-b520-c4fe2f7fafad/Images/Documentation/image-1718974500060.png) The User Password Settings panel is displayed. These settings will apply to all sub-users. ![](https://cdn.document360.io/bef0a1ea-7768-4d5a-b520-c4fe2f7fafad/Images/Documentation/image-ZNMVLNWY.png) 2. | **Setting** | **Description** | | --- | --- | | Minimum Password Length | Enter the minimum number of characters the user must enter for the password. This value must be between 8 and 128. | | Prevent password reuse | Enter the number of times the password can be reused. | | Number of failed login attempts before user lockout (default 5) | Enter the number of times a user can fail to enter the correct password before being locked out of the login. | | Number of minutes to lock out user (default 5) | Enter the number of minutes that a user will be locked out after login attempt failures. | | Auto-expire password after days (default 0=never) | Enter the number of days after which a password will expire. | | Require at least one uppercase letter | Enable to require the user to enter a password that includes at least one uppercase letter. | | Require at least one lowercase letter | Enable to require the user to enter a password that includes at least one lowercase letter. | | Require at least one number | Enable to require the user to enter a password that includes at least one number. | | Require at least one non-alphanumeric character | Enable to require the user to enter a password that includes at least one non-alphanumeric character. | | Allow users to change their own password | Enable to allow the user to change the password. If this setting is not enabled, only the Root User can change the user password. | | Prohibit passwords made up of single dictionary words or common names | Enable to prohibit the password from consisting of a single dictionary word or a combination of names. | 1. Set the user password rules. 3. After changing password settings, click **Apply Password Policy**. ## Related - [Reviewing the Users Panel](/reviewing-the-users-panel.md) - [Searching for a User](/searching-a-user.md) - [Reviewing Details and Editing an Existing User](/reviewing-details-and-editing-an-existing-user.md) - [Signing in as a New User](/signing-in-as-a-new-user.md) - [Users in Wasabi Hot Cloud Storage](/users-1.md)