/mcpPassword Settings Default phone PINs and web application passwords are applied to each user account that you create. The web application password and voicemail PIN settings for individual users determine: • The authentication rule that governs the user account. • The time of password or PIN lockout if the user password or PIN is locked by an administrator. • The password changing settings of a user, whether user is allowed to change the password or the password must be changed during next sign in. • The expiry of a password or PIN. • The last time a password or PIN was changed. • The number of failed sign-in attempts, the time of the last failed sign-in attempt, and the time period that the lockout is enforced. Securing and Changing User Phone PINs To help protect Unity Connection from unauthorized access and toll fraud, every user should be assigned a unique phone PIN. Additionally, each PIN should be six or more characters long and non-trivial. To assign unique PINs to Unity Connection end user accounts (users with mailboxes) after they have been created, use the Bulk Password Edit tool along with a CSV file that contains unique strings for the PINs to apply PINs in bulk. The Bulk Password Edit tool is a Windows-based tool. Download the tool and view Help at http://www.ciscounitytools.com/applications/cxn/bulkpasswordedit/bulkpasswordedit.html. Note PIN Synchronization between Unity Connection and Cisco Unified CM PIN Synchronization feature in Unity connection allows the administrator to configure Unity Connection to maintain the common PIN for the users to access the Cisco Unity Connection Voicemail, Extension Mobility, Conference Now and Mobile Connect. Using this feature, when a user updates the voicemail PIN for Unity Connection, the PIN automatically gets synchronized with the corresponding user account on Cisco Unified CM and vice versa. PIN Synchronization is supported only with Cisco Unified CM 11.5(1) and later. To enable this feature, check the Enable End User PIN Synchronization for Primary AXL Server check box on the Edit AXL Servers page of Cisco Unity Connection Administration. For field information, see Help > This Page. Before using PIN Synchronization feature, ensure the following: • The alias of the user on Cisco Unity Connection must be same as the user ID on the Cisco Unified CM or the users should be integrated with Cisco Unified CM through AXL server or LDAP. • Authentication Rules on Cisco Unity Connection must be same as the Credential Policies on Cisco Unified CM to reduce possible error conditions. For more information on authentication rules, see "Passwords, PINs, and Authentication Rule Management" chapter in the Security Guide for Cisco Unity Connection Release 14 available at https://www.cisco.com/c/en/us/td/docs/voice_ip_comm/connection/15/security/guide/b_15cucsecx.html . System Administration Guide 271 User Settings Password Settings