Queries the password policy of CloudSSO users.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
cloudsso:GetPasswordPolicy |
get |
*Directory
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| DirectoryId |
string |
Yes |
The ID of the CloudSSO directory. |
d-00fc2p61**** |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
The response object. |
||
| RequestId |
string |
The request ID. |
B7C6E839-FB65-59BE-B753-003AA8AF7DF7 |
| PasswordPolicy |
object |
The password policy. |
|
| MinPasswordLength |
integer |
The minimum password length. Valid values: 8 to 32 characters. |
8 |
| MinPasswordDifferentChars |
integer |
The minimum number of different characters in a password. A value of 0 indicates no restriction. The maximum value equals the value of the |
8 |
| PasswordNotContainUsername |
boolean |
Indicates whether to exclude the username from the password. Valid values:
|
true |
| MaxPasswordAge |
integer |
The validity period of a password. Valid values: 1 to 120. Unit: days. |
90 |
| PasswordReusePrevention |
integer |
The policy for password history check. The previous N passwords cannot be reused. Valid values of N: 0 to 24. The value 0 indicates that all historical passwords can be reused. Note
Passwords that are generated before January 5, 2024 are not counted as historical passwords. |
1 |
| MaxLoginAttempts |
integer |
The maximum number of consecutive failed login attempts. If an incorrect password is entered for the specified number of consecutive times, the account is locked for 1 hour. Valid values: 0 to 32. The value 0 indicates that the number of password retries is not limited. |
5 |
| RequireNumbers |
boolean |
Indicates whether digits are required in a password. Valid values:
|
true |
| RequireLowerCaseChars |
boolean |
Indicates whether lowercase letters are required in a password. Valid values:
|
true |
| MaxPasswordLength |
integer |
The maximum password length. |
32 |
| RequireUpperCaseChars |
boolean |
Indicates whether uppercase letters are required in a password. Valid values:
|
true |
| RequireSymbols |
boolean |
Indicates whether special characters are required in a password. Valid values:
|
true |
| HardExpire |
boolean |
Indicates whether to disable logon after a password expires. Valid values:
|
true |
Examples
Success response
JSON format
{
"RequestId": "B7C6E839-FB65-59BE-B753-003AA8AF7DF7",
"PasswordPolicy": {
"MinPasswordLength": 8,
"MinPasswordDifferentChars": 8,
"PasswordNotContainUsername": true,
"MaxPasswordAge": 90,
"PasswordReusePrevention": 1,
"MaxLoginAttempts": 5,
"RequireNumbers": true,
"RequireLowerCaseChars": true,
"MaxPasswordLength": 32,
"RequireUpperCaseChars": true,
"RequireSymbols": true,
"HardExpire": true
}
}
Error codes
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.