Request to turn off password expiration on Blackbaud Sky Azure for specific accounts assigned to customisations or integrations

Customers may have integrations or customisations which require an assigned Blackbaud CRM account.

This brings challenges as the password expiration policy requires the password to be reset every 90 days.

There are already non-expiring accounts in the system for Reporting Services, Email Services and Job Scheduling. At present, this is not possible on Blackbaud Sky Azure.

  • Scott Douglas
  • Dec 22 2021
  • Shipped
Organization Name (Please enter full organization name) Blackbaud Support
Reported Version 4.0
  • Attach files
  • Admin
    Pat Conley commented
    December 16, 2022 19:45

    We released support for personal access tokens with a 1 year expiration, with SP32. Marking this as Shipped.

  • Admin
    Pat Conley commented
    August 23, 2022 20:22

    The PAT (personal access token) solution is on track for delivery in SP32 this October 2022.

  • Admin
    Pat Conley commented
    December 30, 2021 17:09

    Yes. And regarding integrations, those will continue to authenticate as is with existing password policies until PATs are available. You will be able to migrate to PATs on your timetable.

  • Paul Smith commented
    December 30, 2021 14:52

    In the meantime will the implementation of BBID to Blackbaud CRM utilize the password policies and MFA of the authentication provider?

  • Admin
    Pat Conley commented
    December 30, 2021 14:21

    We are working on a PAT (personal access token) solution for these integrations that will use proxy user accounts and tokens that expire annually. We recommend that our Azure customers migrate to that solution when it becomes available later in 2022, and we hope that it helps to mitigate the current struggles with 90 day expirations. We do not have plans to provide a never-expiring password. But we'll keep this idea open for voting and will continue to monitor it.