[User Accounts] Password Length and Complexity Requirements

Problem statement:

Our institution has a password standard that requires a minimum of 15 characters, can't be a previously used password, no common phrases, etc. While that is enforced for all our internal users via SSO, individuals who create an account via Canvas or Catalog aren't required to meet the same standard.

Proposed solution:

We'd like the ability to enforce a password policy to ensure we're compliant with institutional policy to enforce items such as: -Minimum Character Count -Complexity (Lowercase, Uppercase, Numeric, Special Characters) -Prevent users from re-using previous passwords -Prevent users from using personal information (Name, SIS ID, Login ID)

User role(s):

admin