---
sourceDocument: Australia ServiceNow AI Platform Capabilities
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/servicenow-platform

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia ServiceNow AI Platform Capabilities

ft:clusterId :

    - platcap

bundleId :

    - platcap

workflow :

    - Platform


---

# Password Reset verifications

# Password Reset verifications {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 3 Minuten Lesedauer

Each verification specifies the method and process for verifying the identity of the user that is requesting a password reset.

## Verifications included with Password Reset

The Password Reset application
includes the following verifications in the base system. You can create a verification based
on either a base-system verification or a verification type (a template).  
Hinweis:  
The Password Reset Windows Application doesn't support custom verifications.

|-|-|
| QA verification | Implements a self-service Password Reset model with questions that are included with the base system or custom questions that the admin defines. While enrolling for the process, the user decides which questions to provide answers for. Questions are presented in the language that the user requested during login. When a user requests a password reset, the system poses a specified number of the questions that the user selected during enrollment. The user must answer all questions correctly to verify their identity.Abbildung : 1. QA verification on the Verify page For information on the user enrollment experience, see [Enroll for the Password Reset program using questions and answers](https://servicenow-prod.fluidtopics.net/NcJrjrWatI14evpq_hN8fg "Your organization might ask you to select the questions to use when resetting your password. You select the questions and provide answers that only you know. At another time, when you reset your password, your answers verify your identity. You can enroll on a mobile device."). This verification is based on the Security Questions verification type. |
| Email verification | This verification relies on auto-generated code numbers. You typically implement email verification as a self-service Password Reset model. When a user requests a password reset, the system sends a verification code to an email address that the user authorized during enrollment. To verify identity, the user then submits the code on the Password Reset Verify page. For information on the user enrollment experience, see [Enroll for the Password Reset program using emailed codes](https://servicenow-prod.fluidtopics.net/EwQgyMA9UdUJXq3lPGky~A "To verify your identity while resetting your password, you enter a code that was sent to your email address. You can enroll for this program on a mobile device."). The Password Reset Windows Application supports email verification. This verification is based on the Email Code verification type. By default, a six-digit email verification code is sent to the user through email. The code expires in 10 minutes. Users can attempt to send another code after two minutes. A maximum of 10 email verification codes can be sent to a user in one day. |
| SMS verification | Implements a self-service or service desk-assisted Password Reset model that relies on auto-generated code numbers. When a user requests a password reset, the system sends a code to an SMS-capable device that the user has authorized. To verify identity, the user then submits the code on the Password Reset Verify page. You can use the ServiceNow Notify feature to send the codes. For information on the user enrollment experience, see [Enroll for the Password Reset program using SMS codes](https://servicenow-prod.fluidtopics.net/kARz5y~ezL7E~JmxS_HOUw "To verify your identity while resetting your password, you can use a code (the SMS code) that was delivered to your mobile phone or device. You can enroll on a mobile device."). This verification is based on the SMS Code verification type. When users enroll for email or SMS verification on the Password Reset Enrollment page, they get a code to verify their email address or device. After the users enter the code and select Verify, an associated record is automatically created in the Password Reset Enrollment for Verifications \[pwd_enrollment\] table even before they select Submit. By default, a six-digit verification code is sent to the user's mobile device. The code expires in five minutes. Users can attempt to send another SMS verification code to the device after two minutes. A maximum of 10 codes can be sent to a particular device in one day. Hinweis: While the record is created automatically in the Password Reset Enrollment for Verifications \[pwd_enrollment\] table for the email or SMS verification, the associated enrollment check script doesn't get processed unless users select Submit. |
| Authenticator verification | Password Reset model that relies on auto-generated code numbers. Users typically implement authenticator verification as a self-service Password Reset model. When a user requests a password reset, the user reads a code from the authenticator app on a device that the user has paired. To verify identity, the user then submits the code on the Password Reset Verify page. For information on the user enrollment experience, see [Enroll for the Password Reset program using an authenticator](https://servicenow-prod.fluidtopics.net/W~fJOjybXPq1L~dZPgaUNw "Verify your identity while resetting your password by enrolling for the Password Reset program using a third-party authenticator app."). The Password Reset Windows Application supports Google Authenticator verification. This verification is based on the authenticator verification type. |
| Personal Data --- Confirm Email Address | Implements a self-service Password Reset model that relies on user information that is available in the user profile on the instance. This verification is based on the Personal Data Confirmation verification type. Hinweis: Users can't configure this verification for the processes with the active public access. |
| Personal Data --- Enter User Name | Implements a self-service Password Reset model that relies on user information that is available in the user profile on the instance. This verification is based on the Personal Data verification type. |
| Soft PIN Verification | Implements a self-service Password Reset model that relies on a Soft PIN that's a six-digit number. Users can enroll for the Soft PIN verification for a process and reset the Soft PIN. ServiceNow® Virtual Agent supports the Soft PIN verification method. |
[Tabelle : 1. Password Reset verifications]

{#c_PWRVerifications__table_mxh_lbz_f1b}
* **[Personal data identification types and confirmation type verifications](https://servicenow-prod.fluidtopics.net/IZoLAh~GDcNvqXlAGPNtaA)**   
  Personal data verifications allow users to verify their identity by providing answers to questions that are generated from personal information stored in the User table `[sys_user]`.
* **[SMS Code Verification type for Password Reset](https://servicenow-prod.fluidtopics.net/vfnZdjq2M3hCEJSdactQhA)**   
  Using the Simple Message Service (SMS) Code Verification type, a user can verify identity with the help of any SMS-enabled device, like a cell phone that accepts text messages. When a user requests password reset, the system sends a numerical code to the device and the user then enters the code on the Password Reset Verification page.
* **[Specify the number of required security questions](https://servicenow-prod.fluidtopics.net/bNQZwmAVlIKxfCjQ0z_KtA)**   
  When designing a Security Questions verification for Password Reset, you can specify the number of questions to display when users enroll. You can also specify the number to display when a user is verifying identity while resetting the password.

**Zugehörige Konzepte**   

* [Credential stores for Password Reset](https://servicenow-prod.fluidtopics.net/buvoo4XIOAgJ~PKhItvNwg "Credential stores hold user information such as user names and passwords that can be used as login credentials. Examples include the User table [sys_user] or an Active Directory server.")  
**Zugehörige Tasks**   

* [Configure password expiration reminder](https://servicenow-prod.fluidtopics.net/chxAPKC4Uksqp68fFhFLZA "You can configure the password reset expiration reminder feature to send notifications to change or reset a user’s password whenever it is going to expire.")
* [Configure your Password Reset process to auto-enroll users](https://servicenow-prod.fluidtopics.net/Z~cxlh~ruTRQpfFuOJNH5A "To simplify management, many organizations auto-enroll users in the Password Reset program. Every base-system verification type enables you to specify automatic enrollment for your process.")
* [Enable users to enroll for Password Reset](https://servicenow-prod.fluidtopics.net/dnwp9Ma0rsxh5WVALutJog "To enable users to enroll for the Password Reset program, you specify a UI macro that takes the user through the enrollment process and a script that processes the enrollment data that the user entered. The base system includes a functioning macro and script.")
* [Configure Password Reset properties](https://servicenow-prod.fluidtopics.net/83Dm8_sAgBsNGGfj0zy_Hg "You can specify properties that configure the Password Reset experience for end users.")
* [Send email to remind users to enroll for Password Reset](https://servicenow-prod.fluidtopics.net/cykyfREDKuW0IXYrR~jnpQ "You can automatically send messages that remind users to enrolled in the Password Reset process. You specify the text of the message and can configure the messages to repeat at intervals.")
* [Configure the required strength for passwords](https://servicenow-prod.fluidtopics.net/XtiMlgZjAHEv53bOFq2OMQ "The password that a user defines must meet certain requirements — for example, it must contain at least 12 characters, it must include a numeral, and so on. You can configure the requirements as needed for your organization.")
* [Specify lockout for failed login attempts](https://servicenow-prod.fluidtopics.net/WpU57WqqH17b8bPvrG6uZQ "The system provides inactive script actions that enable you to specify the number of failed login attempts before a user account is locked and to reset the count after a successful login.")
* [Configure Google reCAPTCHA for the password reset process](https://servicenow-prod.fluidtopics.net/fqOKwynU1VtjcxajD5khCQ "To use the Google reCAPTCHA service, instances that are running on a domain other than service-now.com require an API key pair from Google.")
* [Create a custom Password Reset verification](https://servicenow-prod.fluidtopics.net/UhHqwBCk1dx~WL0Ln4SZDw "Use a verification type in the base system as a template to design a custom verification. The Password Reset Windows Application does not support custom verifications.")
* [Create a Password Reset verification from an existing verification](https://servicenow-prod.fluidtopics.net/yuQ3ZFNxRn8yrky_jCWPZQ "The Password Reset application includes several example verifications that you can use as they are or as the basis for a custom verification. If the verification types in the base system do not meet your needs, you can create a custom verification type.")  
**Zugehörige Verweise**   

* [Calculating the security score for password reset process](https://servicenow-prod.fluidtopics.net/jKGLm3TaUrVM2S7QeAD6tQ "The security score of the password reset process is a critical metric for the password reset administrators to assess the strength and configuration of the password reset process.")

