Password and Account Policy Options for PGP Encryption Cloud Server and secure inboxes
search cancel

Password and Account Policy Options for PGP Encryption Cloud Server and secure inboxes

book

Article ID: 445226

calendar_today

Updated On:

Products

PGP Command Line PGP Key Management Server PGP Key Mgmt Client Access and CLI API PGP SDK Desktop Email Encryption Drive Encryption Encryption Management Server Endpoint Encryption File Share Encryption Gateway Email Encryption Policy Based Encryption

Issue/Introduction

This article outlines the configurable password and inactivity policy parameters for external user accounts on the PGP Encryption Cloud Server.

Resolution

Password Policy Parameters:

The following settings govern how external users interact with the Secure Inbox for PGP Encryption Cloud Server:

  • Inactivity Expiration: Defines the number of days an account can remain idle before it is marked for deletion.
    • Default: 90 days.

  • Account Expiration Reminders: Determines when a user is notified that their account is approaching the inactivity limit.
    • Default: 15 days prior to expiration.

  • Message Expiration: Controls how long individual encrypted messages remain in the Secure Inbox, independent of account activity.

  • Password Complexity: Enforces requirements for external user passphrases (e.g., minimum length, use of special characters, and digits).

  • Lockout Threshold: The number of failed login attempts allowed before the account is temporarily locked (typically 3–5 attempts).

  • Unlock/Reset Window: The time-to-live (TTL) for security codes emailed to users for account unlocking or password resets.
    • Default: 10 minutes.

These parameters are configured at the server level by Broadcom.
If your organization requires adjustments to any of these policies (e.g., shortening the inactivity window or increasing password complexity):

  1. Identify the specific parameter and the new value you wish to implement.
  2. Open a technical support case with PGP Encryption Support.
  3. An engineer will verify your identity and apply the requested changes to your Cloud Server instance.

 

Additional Information

163953 - Configure Web Email Protection account expiration reminders
443376 - Understanding Expired Invitations for PGP Encryption Cloud Server
443799 - Troubleshooting Secure Inbox Login Failures and Account Lockouts