Changing or Resetting Your Geneseo Password

Body

Whether you are a new student setting up your account for the first time or an employee updating your credentials, use the guide below to manage your Geneseo password.

I've Just Gotten My Geneseo Account

If you are brand new to Geneseo (or returning after time away), you must set up your password for the first time during the initial account claim process.

How to Change Your Password (If you know your current password)

Choose the option below that matches your situation:

Option A: Using a Personal Computer (Recommended for Students)

⚠️ Note: These steps assume you know your current password. If you forgot it, skip to the Forgot Password section below.

  1. Log in to the Microsoft Security Info Password Page.

  2. Enter your current password, then type your new password in the New password field.

  3. Re-enter it in the Confirm new password field.

  4. Click Submit to finish.

Option B: Using a College-Provided Computer (Primarily Faculty/Staff)

If you are using a computer issued to you by SUNY Geneseo, the process is slightly different to ensure your device stays synced.


Forgot Your Password? (Reset & Recovery)

If you cannot log in because you do not know your current password, choose your status below:

New Students

If you have not yet successfully claimed your account or forgot the password you just made:

  1. Double-check the Account Claim instructions in Section 1.

  2. If you still cannot log in, contact the CIT HelpDesk at (585) 245-5588 or submit a help request.

Existing Account Holders

  1. Go directly to the Microsoft Self-Service Password Reset (SSPR).

  2. Enter your full Geneseo email address (e.g., username@geneseo.edu).

  3. Follow the on-screen prompts to verify your identity and reset your password.

  4. Need a step-by-step walkthrough? Visit the Reset / Recover a Forgotten Password guide.


Password Strength Requirements

PASSWORD STANDARDS

Scope

This standard applies to any Geneseo account. Includes but in not limited to: 

  • Students
  • Employees
  • CAS Employees
  • Volunteers
  • Department accounts

Standard statement

All new passwords should be at least 16 characters long and use multi-factor authentication (MFA). Exceptions where MFA cannot be used must be approved by CIT. Accounts without MFA must (a) be at least 20 characters long OR (b) expire every 60 days. 

Passwords do not expire on a fixed schedule. However, passwords must be changed if they are compromised, suspected of compromise, or determined to be demonstrably weak under modern password‑cracking capabilities.

Guidelines

To prevent unauthorized access to SUNY Geneseo computer systems, users must practice proper password management.

This includes:

  • Use a complex password containing 3 out of the following character types:
    • Uppercase letters
    • Lowercase letters
    • Numbers
    • Special characters, e.g. !@#*&).
  • Do not include easy to guess words or numbers in your password, e.g. your pet's name or your birthday
  • Never share your Geneseo password with anyone.
  • Never use the same password for more than one account.
  • Never communicate your password by telephone, email, or messaging.
  • All user accounts must enroll in and use Multifactor Authentication.
  • Log off or lock the screen before leaving a computer unattended.
  • Change your password if there is any suspicion it has been compromised.
  • Passwords may be required to be changed if security testing, monitoring, or threat intelligence indicates that their strength is insufficient against current cracking techniques, even if no active misuse has been observed.
  • Consider using a password manager to create and remember complex passwords.

Requirements by account type

  • User admin accounts, e.g. vsmithadmin
    • 16+ characters
    • 2-year expiration
    • MFA required
  • Generic accounts: departments, clubs, etc. 
    • 16+ characters
    • no expiration
    • MFA required (after Sept 1, 2025)
    • any shared accounts should be saved in a password manager.
      • CIT recommends and supports 1Password.
      • If the account is only shared by 2 people the free version of BitWarden may be a viable alternative.
      • This does not include email delegated accounts, where no one uses the password.
  • Service accounts: automation, non-interactive
    • 20+ characters
    • no expiration
    • MFA not required
  • Standard human users: employees, students [default policy]
    • 16+ characters
    • no expiration
    • MFA required
  • Special guest accounts
    • 16+ characters
    • 60 day expiration
    • MFA not required
    • If only used for special events, the account should be disabled between events

Your new password must meet specific security criteria depending on whether you are enrolled in Multi-Factor Authentication (MFA).

Requirement Enrolled in MFA (Recommended) NOT Enrolled in MFA
Minimum Length Minimum 16 characters Minimum 20 characters OR must expire/change every 60 days.
Complexity No specific character types required, just length.

Must include 3 of the following:

  • Uppercase letters
  • Lowercase letters 
  • Numbers
  • Punctuation (!, @, #, $, etc.)
History
  • Cannot match any of your last 25 passwords.
  • Cannot match any of your last 25 passwords.
Restrictions
  • Cannot contain your username.
  • Cannot contain parts of your full name.
  • Cannot contain the words "Geneseo" or "Knights".
  • Cannot be a known weak/compromised password.
  • Cannot contain your username.
  • Cannot contain parts of your full name.
  • Cannot contain the words "Geneseo" or "Knights".
  • Cannot be a known weak/compromised password.

Updating Your Saved Passwords

After changing your password, your devices and apps will lose connection until you update them. Some will prompt you automatically, while others require manual updates.

Be sure to update your password on the following:

  • Mobile Apps: Brightspace Pulse, Geneseo Mobile App

  • Email Clients: Apple Mail, Gmail, Thunderbird, Outlook

  • Devices: Smart phones (iOS/Android), Tablets (iPads)

  • Browsers: Chrome, Edge, Firefox, Safari

  • Network & Security: VPN connections and the eduroam wireless network

Special Instructions for Personal Mac Users (eduroam Fix)

If you are using a personal Mac (not provided by the college) and have trouble reconnecting to campus Wi-Fi after a password change, follow these steps to reset your connection:

  1. Open Finder, navigate to Applications ➡️ Utilities, and open Keychain Access.

  2. In the left navigation pane, look under "Category" and click All Items.

  3. Search for the entry named "eduroam" and delete it.

  4. Turn your Mac's Wi-Fi off, wait 5 seconds, and turn it back on.

  5. Select eduroam from your Wi-Fi list. When prompted, enter your full Geneseo email and new password.

 

Still Need Help?

Ask CIT! 📞 (585) 245-5588 | 📧 Email | 💬 Chat | 📝 Submit a Request and we'll be happy to assist you.

 

 

Details

Details

Article ID: 1462
Created
Wed 6/3/26 2:21 PM
Modified
Mon 7/27/26 9:55 AM