These password requirements apply to users who sign in to Duco with a username and password. If your organisation uses Single Sign-On (SSO), your password is managed by your identity provider instead.
Default password requirements
By default, a password must meet one of the following:
- Be at least 8 characters long and contain at least one letter, one number and one special character
- Be more than 20 characters long
Passwords can be up to 256 characters long.
Configurable password requirements
Your organisation’s password requirements can be configured using the following options:
| Option | Setting |
| Minimum length | Any number from 8 to 99 |
| Must contain a lower-case letter (a–z) | true / false |
| Must contain an upper-case letter (A–Z) | true / false |
| Must contain a number (0–9) | true / false |
| Must contain a special character | true / false |
Note: Accepted special characters are: ^ $ * . [ ] { } ( ) ? " ! @ # % & / \ , > < ' : ; | _ ~ ` = + -
The maximum password length is always 256 characters, whatever the configured minimum.