Lock accounts and manage passwords
Lock or unlock selected users, set an initial password and understand the scope of password changes.
Applies to userXpress 1.9.5.50
On this page
Password and lock actions affect the selected accounts in their respective clients. Confirm the user IDs, system/client values and intended access change before proceeding.
Lock or unlock users
- Select the accounts in the Global User Table.
- Choose Lock or Unlock from the toolbar or context menu.
- Review the updated state and any operation messages.
If an account remains locked, inspect the result for that client. An unlock action can fail because your SAP account lacks permission or because another lock condition applies.
Set an initial password
Select the accounts and choose Set Initial Password. Enter the intended initial password when prompted and confirm the action. Check the result for each account, then deliver credentials through your approved process.
Under Settings → Passwords, a predefined initial password and the Show Initial Password dialog window option control whether this action prompts. Check them before applying a reset to several users; a missing prompt does not mean that no password change occurs.
Set a productive password
Set Productive Password is a separate action from setting an initial password. Use it only when your organization’s process requires a productive password. Select the intended accounts, enter the value when prompted and review the results.
Do not use a shared predefined password merely to simplify a bulk operation. Confirm the applicable SAP password policy and the intended first-logon behavior.
The separate Show Production Password dialog window option under Settings → Passwords controls the productive-password prompt. Check its configured password independently of the initial-password settings.
Deactivate a password
Select the accounts and choose Deactivate Password to disable password-based logon for those users. Other configured authentication methods may still be relevant; do not use password deactivation alone as proof that all access has been removed.
For a broader access change, review multiple changes and deletion.