Being able to maintain a global password blacklist would be great. Currently, the only way to ban specific passwords is by globally banning previously used passwords, changing each individual account's password to the banned password and then changing the passwords back again.

Comments

deekayen’s picture

Status: Active » Closed (won't fix)

Re-open if you give me an example of a couple passwords that couldn't be blocked by having a good policy and why if they match the policy that there still need to be specific ones within the policy that are not ok?