Loading

Topics

Managing password settings in the admin console

This article explains Asana's enhanced password strength options and organization-wide password reset capabilities.

Related articles

Password strength

Asana enforces the following requirements for all users:

  1. Passwords must have a minimum length of 8 characters.
  2. Passwords must have at least a "fair" strength as estimated by entropy score.
  3. Passwords must not appear on our list of previously compromised passwords.

For best results, we recommend using a passphrase or generating a random string with a password manager

    For enhanced security, Enterprise+ and Legacy Enterprise super admins can increase the required minimum length to up to 20 characters. This setting can be found by clicking into the Security tab of your admin console and clicking on Password strength.

    Password strength

    Changes to the password minimum length will only affect newly created passwords. The domain admin will have to force reset all user passwords in order for the new password requirements to apply to existing users.

    Organization-wide password reset

    Available on Asana Starter, Advanced, Enterprise, and Enterprise+ tiers, as well as legacy tiers Premium, Business, and Legacy Enterprise.

    Visit our pricing page for more information.

    You can force an organization-wide password reset for users that have access to your organization.

    1. Members or guests who have an Asana password will be logged out. They will then receive an email with a password reset link and be forced to choose a new password before logging in again.

    2. Members or guests who do not have an Asana password will only be logged out.

    3. Members or guests who log in with SAML or Google SSO and don't have an Asana password will only be logged out.

    Note iconNote

    Users who initially signed up to Asana by setting a password and have since upgraded to login with SAML or Google SSO will receive an email asking them to reset their password. This will have no effect on their SAML/Google SSO password.

    Individual password reset

    Available on Asana Enterprise and Enterprise+ tiers, as well as legacy tier Legacy Enterprise. Super admins can reset an individual user's password via their member profile settings.

     

    Loading
    Manage Password Settings in Asana Admin Console