Legacy password policy updates - Angry parents

According to https://webfiles.blackbaud.com/files/support/helpfiles/education/k12/panel/content/bb-k12-new.html#Core (Link will change to https://webfiles.blackbaud.com/files/support/helpfiles/education/k12/panel/content/data/archives/68/index.html#Core after April 13, 2021) there are changes coming to legacy user passwords to change enforcement of password rules. The only users at my school on legacy still are parents. According to the notes they will be enforced as of April 20, 2021. One big gotcha is the enforcement of 365 password age rule. This will likely force the majority of my parents to immediately reset their passwords. Further the recommendation is to enforce 90 day password changes? That advice is 5 years out of date - Time to rethink mandatory password changes | Federal Trade Commission (ftc.gov).


If I understand correctly I can set a policy for Parents to override this default and not set a password expiration policy correct? If I set this policy it will do that correct?

Comments

  • Nancy Kierstead‍ we are in the exact same boat. When was this first announced? (I've been out of commission for 3 weeks so I just found out about it yesterday.) For sure this is horrible timing!
  • Yesterday I asked Blackbaud support about being able to override the new default requirements. The response was that you can override to STRENGTHEN the requirements but not to weaken them. So as of 4/20 setting the Frequency of Change to zero will automatically result in applying the new default of 365, but setting it to 90 would override the new default. We currently have it set to zero for "All School" so per Blackbaud that means that as of 4/20 all non-Blackbaud ID users (primarily parents, in our case) will be required to change their password the next time they sign in. This is not going to be fun.
  • We are there too. I just started transitioning employees over to BBID this week and was going to work on students before they left for the summer and then parents over summer. Parents will not take kindly to multiple changes to logins in such a short period of time.


    I thought October was the required change over to BBID so was working off that as a deadline.
  • Any further replies to this topic should be directed here:
    https://community.blackbaud.com/forums/viewtopic/296/54530
This discussion has been closed.