Search Icon
Skip to main content
Knowledge Base

How to set a security policy for users

Setting up a security policy lets you enforce certain standards for the passwords of all users that access your company’s Rezgo back end. This includes the original administrator.

Go to Settings in the main menu and click Access Policies

Set Up User Rules

There are several User Rules you can set here. These apply to all your Rezgo users:

User rules available in Rezgo. There are four sliders, from top to bottom - Expire Password, Minimum Length, Password Rules, and Sessions Expire In. The sliders go from least secure on the far left to most secure on the far right.

Expire Passwords (A) lets you set how long users can keep the same passwords before being forced to change them. This ranges from never to every week.

Minimum Length (B) lets you set the minimum number of characters each user’s password must include, ranging from 12 to 30+.

Password Rules (C) lets you set the different types of characters users are required to include. These range from no requirements to letters, numbers, capitals and special characters required.

Sessions Expire In (D) is how long a user can stay logged in without any activity before being automatically logged out. It can range from 5 minutes to 5 hours.

Set Up Multifactor Authentication

You can also set up Multifactor Authentication (MFA, also known as 2FA, 2SV, or MFV)

Require MFA (A) turns on MFA. This will require users to get a code when they log in via the email account associated with their user, the SMS number on their user, or an authentication app. To learn more about setting up MFA, read this article.

Remember MFA Tokens(B) lets your users log in for 30 days after entering a code before they’ll need to enter another code to log in with that device.

Set Up Single Sign On (SSO)

To set up SSO, visit this article.

Please note: If you’d like to make sure all users change their passwords to meet your new policy, you can set a short password expiry to force them to update soon, or you can send reset requests to encourage them to set a new password.

Was this article helpful?
Please Share Your Feedback
How Can We Improve This Article?
In This Article

Contact Support

Support Hours

NA: 9 am – 5 pm (GMT+7)
EU: 9 am – 6 pm (GMT)
Mon-Fri, Closed Holidays

Need Onboarding Help?

Talk to our customer success team about our onboarding services

API Documentation

API Documentation