Managing Device Password Policies and Enforce Password on Android Devices

Managing Device Password Policies and Enforce Password on Android Devices

WeGuard provides administrators with two levels of password management: Restrictions, which define the rules for user-created passwords, and Enforcement, which allows an administrator to push a specific password to all devices in a policy group. This ensures that managed devices always meet organizational security and compliance standards.

Before defining restrictions or enforcing a reset, follow these steps to access the correct configuration panel:
  1. Log in to your WeGuard Console.
  2. Navigate to Policies and select the required policy you wish to modify from the list and click on its name to open the editor.
  3. On the left-side settings panel, click on the "Password" tab.




Defining Password Restrictions


Configure the following requirements and lock settings:

  • Password Quality: Sets the minimum complexity required for the device password (e.g., Numeric, Alphanumeric, or Complex)
  • Max Failed Passwords: Defines the number of failed attempts allowed before the device is wiped (setting this to 0 means there is no limit).
  • Minimum Password Length: Specifies the mandatory number of characters (between 4 and 16) required for any new password.
  • Password Expiration Timeout: Determines how many days a password remains valid before a change is mandatory (setting this to 0 means it never expires).
  • Password History Length: Sets the number of previous passwords the system should remember to prevent users from reusing them.
  • Maximum Time to Lock: Defines the duration of inactivity allowed before the device automatically locks its screen.

Enforcing a Mandatory Password


The Enforce Reset Password feature is a powerful tool used to override current device states and push a specific, uniform password to an entire fleet immediately.

Step-by-Step Implementation:

  1. Locate the Field: Scroll to the bottom of the Password tab to find the Enforce Reset Password field.


  1. Enter the New Password: Type the specific password (e.g., 1234) you want to apply to all devices.
  2. Initiate Save: Click the Save button in the top-right corner of the console.
  3. Review and Confirm: A Review Changes window will appear, listing "Enforce Reset Password" as a pending change. Click Confirm & Save to broadcast the password to the entire fleet.



We hope this article was helpful. For additional support:

    • Related Articles

    • Disabling Factory Reset - Android

      The Disable Factory Reset feature allows administrators to prevent users from performing a factory reset on managed devices. This helps protect device configurations, applications, policies, and organizational data from being removed without ...
    • Transferring Devices Between Policy Groups

      In WeGuard, transferring a device between policy groups allows administrators to apply different configurations, apps, and restrictions tailored to specific teams, departments, or roles. This feature simplifies device management and ensures that the ...
    • Managing Bluetooth Settings via WeGuard Policy

      Controlling Bluetooth connectivity is essential for maintaining both security and operational efficiency. Unrestricted Bluetooth can pose data leakage risks or allow unauthorized peripheral connections. WeGuard enables administrators to enforce ...
    • Device Security Features - What is Device Hardening?

      ​​Hello and Welcome to WeGuard Enterprise Visual Knowledge-base Series. In this KB article, We will explain how to harden your device for security measures.  ​ We will discuss the process of securing a device by reducing its surface of vulnerability. ...
    • Android Device Removal and Unenrollment Guide

      IT admins need to delete devices from the organization that are no longer in use or no longer supported. To streamline this process, WeGuard provides the option to remove the MDM with or without resetting the device. This document explains how to ...