---
sourceDocument: Australia ServiceNow AI Platform Capabilities
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/servicenow-platform

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia ServiceNow AI Platform Capabilities

ft:clusterId :

    - platcap

bundleId :

    - platcap

workflow :

    - Platform


---

# Password Reset and Password Change reports and logs

# Password Reset and Password Change
reports and logs {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 4 Minuten Lesedauer

The Password Reset application
provides several tools for monitoring and troubleshooting password reset activities.

Users with the password_reset_credential_manager or password_reset_admin role can view the
status of password reset activities, identify potential security threats, and monitor for
compliance with password security policies.

The Reset Requests, Activity Log, and
Blocked Users modules are useful for monitoring password reset activities
and for troubleshooting password reset issues. They also provide access to more detailed
information than is provided on the Overview module.

To make room for new data, the system periodically purges the data that is used for password
reset monitoring and reporting.

## Password Reset Overview
module {#c_MonitorPasswordResetActivity__section_nsj_yhj_h1b}

The Password ResetOverview module displays reports on password reset and password change activities. Users
with the password_reset_admin role can customize the layout of the reports that appear in the
Overview module.
{#c_MonitorPasswordResetActivity__table_ggr_nzd_sr__entry__2}

| Title | Description |
|-|-|
| Password Requests (last 7 days) | Number of password reset requests by type during the last 7 days. |
| Blocked Users (last 7 days) | Number of users blocked over the last 7 days. |
| Password Reset Request Status (last 7 days) | Status of all password reset requests by process. |
| Password Reset Request by Action (last 30 days) | Number of password reset requests by action type: Reset Password, Unlock Account, or Reset and Unlock. |
| Password Reset Top Users (last 30 days) | Number of password reset requests per user. Many password reset requests from a single user could indicate a security issue. |
| Password Reset Failed Verifications (last 7 days) | Number of failed verification attempts, by verification instance. A failed verification occurs when a user attempts to reset the password, but fails for one reason or another, during the identity verification step. Many failed verification attempts for a specific type of verification could indicate that the process is too complicated or unclear. |
| Password Reset Enrollment By Verification | Number of users by verification type who enrolled and did not enroll in the password reset program. A large number for users who did not enrolled could indicate a compliance or communication issue within the organization. |
| Password Change Top Users (last 30 days) | Number of password change requests per user. Many password change requests from a single user could indicate a security issue. |
[Tabelle : 1. Password Reset reports]

{#c_MonitorPasswordResetActivity__table_ggr_nzd_sr}

## Password Reset activity log {#c_MonitorPasswordResetActivity__section_gcb_5gf_g1b}

The activity log (Password ResetActivity Log) provides detailed information that you can use to troubleshoot and to generate
reports on password reset metrics. Information contained in the activity log is stored in the
Password Reset activity log
\[pwd_reset_activity\] table.

You must have the password_reset_credential_manager or password_reset_admin role to view the
log.

## Password Reset event log {#c_MonitorPasswordResetActivity__section_mvl_5gf_g1b}

The event
log is a valuable resource for troubleshooting. On the Start menu, click Programs (or All Programs)Administrative ToolsEvent Viewer.
If the log does not appear, then, on the Windows Logs menu, click ApplicationsService Logs.

You must have the admin role to view the log.

## To write to the Password Reset event log {#c_MonitorPasswordResetActivity__section_j5g_5gf_g1b}

Edit the
`DebugFlag` registry key entry at: `Computer > HKEY_LOCAL_MACHINE >
SOFTWARE > Microsoft > Windows > CurrentVersion > Authentication > Credential Providers >
{B6EFF27D-C1C4-481F-B81B-F3547C47D58A}`
By default, the key is set to 0. Set the key to 1 to write log entries to the `ServiceNowPwdReset` event log.

You must have
the password_reset_credential_manager or password_reset_admin role to write to the
log.

## Password Reset blocked user
notification {#c_MonitorPasswordResetActivity__section_pvf_jsz_31b}

You can receive email notifications when the number of users that are blocked or locked
exceeds the password blocked threshold. Notifications can alert you to suspicious activities.
The default threshold is 10.

To subscribe: Add an email notification device or modify an existing device and then subscribe
to the Password Reset-Activity Monitor Lockout notification.

You must have the password_reset_credential_manager or password_reset_admin role to
subscribe.

## Schedule for purging Password Reset
data {#c_MonitorPasswordResetActivity__section_ktt_yhj_h1b}

To make room for new data, the system periodically purges the data that is used for password
reset monitoring and reporting. Information contained in reports and monitoring tools could
change dramatically immediately after a data purge.  
Users with the password_reset_credential_manager or password_reset_admin role can follow this procedure to modify the purge interval:

1. On a non-production instance: Navigate to Automated Test FrameworkAdministrationTable Cleanup.
2. Modify the designated tables.
3. Test all changes on the non-production instance.
4. Modify the tables on your production instance and test.

{#c_MonitorPasswordResetActivity__ol_px3_zdw_ggb}Alternatively, contact ServiceNow Technical Support to modify the purge interval.
{#c_MonitorPasswordResetActivity__table_wm3_fyh_kp__entry__2}

| Table name | Purge interval |
|-|-|
| \[pwd_reset_request\] | 90 days (7,776,000 seconds). Depending on your organizational data monitoring requirements, you could configure the rule to: * Purge successful requests after 90 days * Keep failed requests for 120 days {#c_MonitorPasswordResetActivity__ul_g2m_52s_nv} |
| \[pwd_user_lockout\] | 90 days (7,776,000 seconds). Depending on your organizational data monitoring requirements, you could configure the rule to: * Purge successful requests after 90 days * Keep failed requests for 120 days {#c_MonitorPasswordResetActivity__ul_enh_y2s_nv} |
| \[pwd_reset_activity\] | 90 days (7,776,000 seconds). |
| \[pwd_activity_monitor\] | 90 days (7,776,000 seconds). |
| \[pwd_dvc_enrollment_code\] | 1 day (86,400 seconds). |
| \[pwd_sms_code\] | 1 day (86,400 seconds). |
[Tabelle : 2. Purge intervals for Password Reset tables]

{#c_MonitorPasswordResetActivity__table_wm3_fyh_kp}
**Zugehörige Konzepte**   

* [Password Reset and Password Change reports and logs](https://servicenow-prod.fluidtopics.net/ADaLT1aZNJclECoJXmDdLA "The Password Reset application provides several tools for monitoring and troubleshooting password reset activities.")  
**Zugehörige Tasks**   

* [Unblock a Password Reset user](https://servicenow-prod.fluidtopics.net/Xv~_15LtgTKt3rrVAsYk2A "If a user is manually banned or is flagged as exceeding max attempts, the user can be blocked (not allowed to use the Password Reset application). You can unblock a blocked user.")
* [View user requests for password reset](https://servicenow-prod.fluidtopics.net/3T4kZZGpp3Kz~eND_n7XKw "The Reset Requests module displays the status of each password reset request from the Password Reset Request table [pwd_reset_request].")
* [Unblock a Password Reset user](https://servicenow-prod.fluidtopics.net/Xv~_15LtgTKt3rrVAsYk2A "If a user is manually banned or is flagged as exceeding max attempts, the user can be blocked (not allowed to use the Password Reset application). You can unblock a blocked user.")

