> For the complete documentation index, see [llms.txt](https://docs.arksspr.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.arksspr.com/master/arksspr-user-guide/settings/policy-settings.md).

# Policy Settings

The **Password Settings** tab is used to configure the password rules applied during password creation and validation.

<figure><img src="/files/ZPL5tGkB4DRnXbuQQ5nJ" alt=""><figcaption></figcaption></figure>

#### Blacklist Settings

This section allows administrators to define passwords that users are not permitted to use.

* **Upload Blacklist File:** Uploads a blacklist containing prohibited passwords.
* **Regular Expression:** Defines password restrictions by using regular expressions.
* **Delete Password:** Removes a password from the blacklist.

#### Password Policy

This section defines the password complexity requirements.

* **Upper Case:** Requires uppercase characters.
* **Lower Case:** Requires lowercase characters.
* **Number:** Requires numeric characters.
* **Special Character:** Requires special characters.
* **Required Criteria Count:** Specifies the minimum number of password requirements that must be satisfied.
* **Minimum Length:** Specifies the minimum password length.
* **Minimum Password Age:** Specifies the minimum time before a password can be changed again.

Select **Save** to apply your changes.

<figure><img src="/files/ZAZSrjwfgAzTGsOUIVyn" alt=""><figcaption></figcaption></figure>

#### Policy Settings

The **Policy Settings** tab is used to create password and verification policies for specific users, groups, or organizational units.

Each policy can be assigned to a specific **Domain**, **Group**, or **Organizational Unit (OU)**.

#### Policy Configuration

* **Policy Name:** Specifies the policy name.
* **Domain / Group / OU:** Specifies where the policy is applied.
* **Enabled:** Enables or disables the policy.
* **Log:** Enables logging for policy-related operations.
* **Only Internal Network Usage:** Restricts the policy to the internal network.

#### Process Type Determination

Specifies the operations to which the policy applies.

* Password Reset
* Unlock
* Password Change

#### Password Settings Determination

Defines the password complexity requirements for the selected policy.

#### Validation Type Determination

Specifies the verification methods available for the selected policy.

* SMS
* Email
* Authenticator

Configured policies are listed at the bottom of the page. Select **Policy History** to view the policy change history.

Select **Save** to apply your changes.
