As part of a recent Moodle security update, stronger password validation has been enabled across the LMS.
When creating a new account or resetting a password, users will need to ensure their password meets the updated security requirements.
In simple terms, passwords should:
- be at least 10 characters long
- include a mix of uppercase letters, lowercase letters, numbers, and special characters
- not use simple words, names, or personal information
- not use obvious patterns such as “123” or repeated characters like “aaa”
- not include blacklisted words such as “moodle”
- not be a password that has appeared in known data breaches
If a password does not meet these requirements, it may be rejected and the user will need to try again with a stronger password.
This update helps improve account security and reduce the risk of unauthorised access.
If RTOs or users experience any issues when creating accounts or resetting passwords, please contact support.