---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Maximize reset password SMS pause window duration \[Updated in Security Center 1.3\]

# Maximize reset password SMS pause window duration \[Updated in Security Center 1.3\] {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Manage the time duration in minutes that a user must wait before they can request a new password reset code.
If this property is not set to the recommended value of 2 minutes or more, then a malicious user could initiate many passwords reset codes in a brief window of time. This increases the chance of a bad actor
predicting the SMS reset code.

## More information {#sc-reset-password-sms-pause-window__section_qhx_1b1_xwb}

{#sc-reset-password-sms-pause-window__table_ajc_b43_3kb__entry__2}

| Attribute | Description |
|-|-|
| Configuration name | password_reset.sms.pause_window |
| Configuration type | System Properties (/sys_properties_list.do) |
| Data type | integer |
| Recommended value | 2 |
| Default value | 2 |
| Category | [Authentication](https://servicenow-prod.fluidtopics.net/faHnGPrE5YkSR8Xq~3OW5g "The authentication category covers the main elements of modern authentication to confirm an entity and its claims are authentic and correct, resistant to impersonation and prevent interception of passwords.") |
| Security risk | * Severity score: 4.8 * CVSS score: Medium * Security risk details: Ensure that password_reset.sms.pause_window is set to a value of 2 or more. {#sc-reset-password-sms-pause-window__ul_g1g_3sf_xwb} |
| Dependencies and prerequisites | None |
[ ]

{#sc-reset-password-sms-pause-window__table_ajc_b43_3kb}

