Identity Manager Password Policies are designed to perform a comprehensive validation against all profile attributes rather than allowing granular selection of specific fields. This article provides a workaround using Policy Xpress (PX) to implement a custom check that prevents users from setting a password that matches their specific User ID.
Identity Manager 14.5
The native Password Policy engine is architecturaly designed to evaluate the entire profile for security compliance. It cannot be configured to selectively ignore certain attributes or exclusively target specific ones (such as the User ID) during the validation phase.
To enforce a rule where the password cannot match the User ID, configure a PX Policy as follows:
Define Data Elements:
Configure Rules:
Configure Action:
Policy Configuration:
If you require native support for selective attribute checking in Password Policies, please submit an enhancement request via the .
To speak with a customer representative or a Support Engineer see . Scroll to the bottom of the page and click on your respective region.