Best practice for resetting forgotten user passwords

前端 未结 3 509
长发绾君心
长发绾君心 2020-12-24 08:24

As far as I can think, there are two reasonable ways to reset a user\'s forgotten password.

  1. Have the user enter their email address and a new plaintext pass

3条回答
  •  星月不相逢
    2020-12-24 09:29

    Verify if the sender is the real user by asking verification questions.

    Do not send password on the personal email that is not on the planate employees list.

    Do not add the word "password" to the title or body of the email.

    Make sure to send separately the username and password.

    For Office 365 user, direct them to the forgot my password area or send this link https://passwordreset.microsoftonline.com

    Don't get intimidated by the user, escalate to IT manager if the need arises.

提交回复
热议问题