Skip to content

admin.passwordpolicy#

Collection Note

This module is part of the nokia.eda_core_v1 collection. To install the collection, use:

ansible-galaxy collection install nokia.eda_core_v1
Added in version 0.3.0.

Synopsis#

  • Description will be added soon.

Parameters#

Parameter Defaults / Choices Comments
allow_user_name
bool
If true, prevents passwords from being or containing the user name.
auth_token
str
required
HTTP authentication (Bearer authentication) string in the format of "Bearer TOKEN".
Required unless state is cronly.
base_url
str
required
EDA API URL including the schema and port (if non standard for the provided schema). Example - https://try.eda.demo:9443.
Required unless state is cronly.
ca_path
str
required
A path to the PEM-encoded CA certificate to use for TLS verification.
Required unless state is cronly.
digits
int
Minimum number of digits required in a password. Can be zero.
force_expired_password_change
int
The maximum number of days until a password change is enforced. A value of zero means no change is required.
get_default
bool
If set to true, the default password policy definition is returned, rather than the current password policy.
hashing_algorithm
str
The hashing algorithm to use when hashing stored passwords.
length
int
Minimum password length. This must be at least 1.
lower_case
int
Minimum number of lower case characters required in a password. Can be zero.
max_failure_wait_seconds
int
The number of seconds before the users access will be restored, after too many authentication failures.
max_login_failure
int
The number of login/authentication failures before a lockout policy takes effect. Zero means no enforcement.
password_history
int
The number of passwords remembered to enforce no re-use of passwords. Zero means no re-use enforcement.
permanent_lockout
bool
If true, lockout is permanent and the users access must be re-enabled by an administrator. If false, the users access will be re-enabled after "maxFailureWaitSeconds" seconds.
reset_time_seconds
int
When lockout is not permanent, the count of authentication failures for a user will be reset this many seconds after the last authentication failure.
special_chars
int
Minimum number of special characters required in a password. Can be zero.
state
str
required
Choices: query, present State of the requested resource object.
tls_skip_verify
bool
required
A flag to control the TLS verification of the session.
Required unless state is cronly.
upper_case
int
Minimum number of upper case characters required in a password. Can be zero.

Authors#