Table of Contents

Lost Password Feature

You can allow the client to change their own password from the client side using the lost password feature. You control whether to allow that feature or not using the following admin tool setting:

ADMIN TOOLS & SETTINGS > SECURITY SETTINGS > GENERAL SECURITY SETTINGS > Forgot Password Tool

Shown in the following admin tool:

Within that screenshot you'll also see links to edit the text in the lost password feature page and lost password email.

Affects of the Password Storage Method

Note there is different behavior within the lost password feature based on the configuration you have for this feature:

ADMIN TOOLS & SETTINGS > SECURITY SETTINGS > GENERAL SECURITY SETTINGS > Client Password Storage Method

If the above setting is:

To further complicate this for the admins the above is based on the current saved state of the password and not essentially the above configuration. If you the admin in an attempt to improve security within you site change the above admin tool AFTER opening your site you will have a few clients with passwords saved in plain text (default setting at installation) and others with encrypted passwords. If a client comes to you for support you may need to temper your response based on knowledge of your admin configuration change.