An effective password is one way you can help Cornell improve its cybersecurity posture.

Why are password changes necessary?

Password changes are necessary to promote security and reduce the chance of unauthorized account access due to a compromised password.

What you should know about creating your Cornell password

  •     Passwords must be at least 10 characters long. 
  •     Passwords must include three of the following:  
  1. Uppercase letter(s)
  2. Lowercase letter(s)
  3. Number(s)
  4. Symbol(s), such as !, @, #, $, %, ^, &, *, (, ), _, +
  •     Passwords cannot be similar to your prior 12 passwords. 
  •     Passwords expire after 90 days. This is true for faculty, staff, and students. 

 What causes an account to become locked out?

Accounts are locked out after five incorrect password attempts. After a period of 30 minutes, accounts will automatically unlock. Lockouts are a security measure against "brute force" password attacks. The Password Management Tool can be used to unlock an account.

Changing your password

On the Password Management page, choose the change option. You will be prompted for your current password as well as a new password. 

Things to consider before changing your password

Enroll in the Password Management System. The Password Management System will allow you to unlock your account or reset your password if needed.

Identify where you might have stored your current password; for example, mapped network drives or printer connections on a personal computer. 

After changing your password

Employees using Cornell-owned Windows computers should lock and unlock their computer screen to cache the new password. 

If connecting remotely via the GlobalProtect VPN, your computer will not recognize your new password for login until after locking and unlocking the screen while connected to the VPN.

Employees using Cornell-owned Mac computers should restart them. If you are prompted to update your keychain, do so when logging in.

Students and employees using personal devices

  • Gmail (or your preferred email application) will require your new password in order to interact with your email.
  • Connection to CornellWiFi will not be impacted.
  • You may need to update The Windows Credential Manager or Apple’s Keychain Access with your new password.