Deployment Guide
188 | Resetting Passwords with the Self-Service Portal Dell Networking W-ClearPass Guest 6.0 | Deployment Guide
Clicking the I’ve forgotten my password link displays a form where the user password may be reset:
Entering a valid username will reset the password for that user account, and will then display the receipt page
showing the new password and a login option (if NAS login has been enabled).
This feature allows the password to be reset for any guest account on the system, which may pose a security risk. It
is strongly recommended that when this feature of the self-service portal is enabled, guest registrations should also
store a secret question/secret answer field.
To enable a more secure password reset operation, first enable the secret_question and secret_answer fields to the
registration form. The default appearance of these fields is shown below:
Next, enable the Required Field option in the Self-Service Portal properties. Setting this to (Secret Question) will
ask the guest the secret_question and will only permit the password to be reset if the guest supplies the correct
secret_answer value.
With these settings, the user interface for resetting the password now includes a question and answer prompt after
the username has been determined: